The following rule added to /etc/shorewall/rules appears to punch the appropriate hole through the firewall to make mosh work:
ACCEPT net $FW udp 60001:61000 Tested on Shorewall 4.4.11.6-3+squeeze1 (Debian) . I can't claim to be an iptables expert, so don't know if a more restrictive rule might be better. You may consider getting a shorewall "macro" included into their distribution, like SSH does in /usr/share/shorewall/macro.SSH --ken -- Sent from a Dell 1950 8 CPU 32 GB RAM _______________________________________________ mosh-devel mailing list mosh-devel@mit.edu http://mailman.mit.edu/mailman/listinfo/mosh-devel