The following rule added to /etc/shorewall/rules appears to 
punch the appropriate hole through the firewall to make mosh 
work:

ACCEPT          net             $FW             udp     60001:61000

Tested on Shorewall 4.4.11.6-3+squeeze1 (Debian) . I can't 
claim to be an iptables expert, so don't know if a more 
restrictive rule might be better.

You may consider getting a shorewall "macro" included into 
their distribution, like SSH does in 
/usr/share/shorewall/macro.SSH


--ken

-- 
Sent from a Dell 1950 8 CPU 32 GB RAM
_______________________________________________
mosh-devel mailing list
mosh-devel@mit.edu
http://mailman.mit.edu/mailman/listinfo/mosh-devel

Reply via email to