a) The "tunnels" file is now in the RPM (really!) b) SNAT can now be applied to port-forwarded connections. c) A bug which would cause fireall start failures in some DHCP configurations has been fixed. d) The firewall script now issues a message if you have the name of an interface in the second column of an entry in /etc/shorewall/masq and the named interface is not up. e) You can now configure Shorewall so that it does not require kernel NAT and/or mangle netfilter support. f) Thanks to Alex Polishchuk, the "hits" command from seawall is now in shorewall. g) Support for IPIP tunnels has been added. -Tom -- Tom Eastep \ [EMAIL PROTECTED] ICQ #60745924 \ http://seattlefirewall.dyndns.org Shoreline, Washington \__________________________________________ _______________________________________________ Leaf-devel mailing list [EMAIL PROTECTED] http://lists.sourceforge.net/lists/listinfo/leaf-devel