Update of /cvsroot/leaf/doc/guide/install-bering-uclibc
In directory sc8-pr-cvs1.sourceforge.net:/tmp/cvs-serv8176

Modified Files:
        buci-shorwall.xml 
Log Message:
This is the final read yversion ready for review.

Maybe we should delete the update section at all??


Index: buci-shorwall.xml
===================================================================
RCS file: /cvsroot/leaf/doc/guide/install-bering-uclibc/buci-shorwall.xml,v
retrieving revision 1.2
retrieving revision 1.3
diff -C2 -d -r1.2 -r1.3
*** buci-shorwall.xml   5 Aug 2004 19:19:21 -0000       1.2
--- buci-shorwall.xml   5 Aug 2004 19:44:22 -0000       1.3
***************
*** 47,52 ****
    </itemizedlist>
  
!   <para>The shorwall.lrp package provided on the Bering-uClibc distro is built
!   as follow:</para>
  
    <itemizedlist>
--- 47,52 ----
    </itemizedlist>
  
!   <para>To update to a new shorwall.lrp package for Bering-uClibc you just
!   need to:</para>
  
    <itemizedlist>
***************
*** 54,96 ****
        <para>Download the latest shorewall-x.y.lrp package from Tom&#39;s
        <ulink url="http://www.shorewall.net/pub/shorewall/";>download area</ulink>
!       and rename it shorwall.lrp.</para>
      </listitem>
  
      <listitem>
!       <para>Download either the <ulink
!       
url="http://www.shorewall.net/pub/shorewall/LATEST.samples/two-interfaces.tgz";>Two-interfaces</ulink>
!       Masquerading Firewall or the <ulink
!       
url="http://www.shorewall.net/pub/shorewall/LATEST.samples/three-interfaces.tgz";>Three-interfaces</ulink>
!       Masquerading Firewall with DMZ depending on your own situation. They
!       will provide you with default setup for the interfaces, masq, policy,
!       rules and zones files that will be used in replacement of those provided
!       in Tom&#39;s original package.</para>
      </listitem>
  
      <listitem>
!       <para>Add two statements in the &#34;rules&#34; file in order to allow
!       query to dnscache and weblet servers from the internal network. See
!       below.</para>
      </listitem>
  
      <listitem>
!       <para>Replace the info entry in the Rules and Config file by ULOG as
!       explained <ulink 
url="http://www.shorewall.net/shorewall_logging.html";>here</ulink>
!       to redirect Shorewall output through ulogd daemon</para>
      </listitem>
  
      <listitem>
!       <para>The four previous steps will allow you to update shorwall.lrp on
!       your own Bering distro whenever a more recent Shorewall version is
!       released.</para>
      </listitem>
    </itemizedlist>
  
    <important>
      <para>Bering-uClibc&#39;s shorwall.lrp package is provided by default with
!     the Two-interfaces Masquerading Firewall and the two extra rules
!     mentionned earlier. This setup assumes that eth0 is connected to the
!     Internet via a dynamic IP and that your local network is interfaced
!     through eth1.</para>
    </important>
  
--- 54,97 ----
        <para>Download the latest shorewall-x.y.lrp package from Tom&#39;s
        <ulink url="http://www.shorewall.net/pub/shorewall/";>download area</ulink>
!       and rename it shorwall.lrp, or download <filename>shorwall.lrp</filename>
!       from the <ulink
!       
url="http://leaf.sourceforge.net/mod.php?mod=userpage&#38;menu=91017&#38;page_id=51";>LEAF
!       Bering-uClibc packages page</ulink>.</para>
      </listitem>
  
      <listitem>
!       <para>Copy the file to your boot media and to the root directory of your
!       LEAF router.</para>
      </listitem>
  
      <listitem>
!       <para>Save your configuration from /etc/shorewall/* in /tmp.</para>
      </listitem>
  
      <listitem>
!       <para>Run <command>lrpkg -i shorwall.lrp</command> at your routers root
!       dir.</para>
      </listitem>
  
      <listitem>
!       <para>Copy your saved configuration back from /tmp to /etc/shorewall.</para>
!     </listitem>
! 
!     <listitem>
!       <para>Save shorwall.lrp via lrcfg back-up facility.</para>
      </listitem>
    </itemizedlist>
  
+   <note>
+     <para>The shorewall documentation enhancements in the configuration files
+     will be lost, if you choose to go this way. Also major feature
+     enhancements might be lost. </para>
+   </note>
+ 
    <important>
      <para>Bering-uClibc&#39;s shorwall.lrp package is provided by default with
!     the Two-interfaces Masquerading Firewall and the two extra rules mentioned
!     earlier. This setup assumes that eth0 is connected to the Internet via a
!     dynamic IP and that your local network is interfaced through eth1.</para>
    </important>
  
***************
*** 198,217 ****
  </screen>
  
-   <para>As you can notice from above, two rules have been added to the
-   two-interfaces file. They allow:</para>
- 
-   <itemizedlist>
-     <listitem>
-       <para>UDP requests from the local network (loc) to the firewall (fw) on
-       port 53. This is the port used by dnsmasq to listen at dns requests
-       coming from the internal network.</para>
-     </listitem>
- 
-     <listitem>
-       <para>TCP requests from the local network (loc) to the firewall (fw) on
-       port 80. This is the port used by weblet for its web server.</para>
-     </listitem>
-   </itemizedlist>
- 
    <para>D/ Finally the <filename>masq</filename> file (entry 7). In Bering it
    looks like:</para>
--- 199,202 ----



-------------------------------------------------------
This SF.Net email is sponsored by OSTG. Have you noticed the changes on
Linux.com, ITManagersJournal and NewsForge in the past few weeks? Now,
one more big change to announce. We are now OSTG- Open Source Technology
Group. Come see the changes on the new OSTG site. www.ostg.com
_______________________________________________
leaf-cvs-commits mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-cvs-commits

Reply via email to