Re: [Shorewall-users] Viewing my cable modem's status page from LAN/FW

2020-12-16 Thread Jeremy Baker
>> Shorewall-users mailing list >> Shorewall-users@lists.sourceforge.net >> https://lists.sourceforge.net/lists/listinfo/shorewall-users > > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.source

Re: [Shorewall-users] conditional rules by kernel capabilities

2018-07-12 Thread Jeremy Baker
On 07/11/2018 07:00 PM, Tom Eastep wrote: > On 07/11/2018 11:33 AM, Tom Eastep wrote: >> On 07/11/2018 07:11 AM, Jeremy Baker wrote: >>> Is there any way to test for kernel features and have conditional rules >>> based upon them?  As an example, I like to use som

[Shorewall-users] conditional rules by kernel capabilities

2018-07-11 Thread Jeremy Baker
regardless. -- Jeremy Baker GnuPGP fingerprint = EE66 AC49 E008 E09A 7A2A 0195 50EF 580B EDBB 95B6 -- Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot

[Shorewall-users] u32 filters

2016-05-24 Thread Jeremy Baker
0xff at 59 \ If I could use this technique with shorewall, then I wouldn't have to have separate interfaces and rules for ipv6 (from a traffic shaping perspective). Is there a way to input this into tcfilters, or run additional tc commands after shorewall has loaded? -- Jeremy Baker <j...@mbcs

[Shorewall-users] packet marking, protocol 41

2016-05-08 Thread Jeremy Baker
If I mark a packet that is part of an ipv6 connection, and that packet then gets encapsulated by a 6in4 tunnel, does the ipv4 packet that leaves the firewall still have the mark? -- Jeremy Baker <j...@mbcs.ca> GnuPGP fingerprint = EE66 AC49 E008 E09A 7A2A 0195 50EF 580B EDB

Re: [Shorewall-users] rule for allowing users in LOC zone to the websites running in DMZ zone

2016-01-30 Thread Jeremy Baker
Signup Now! > http://pubads.g.doubleclick.net/gampad/clk?id=267308311=/4140 > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-

Re: [Shorewall-users] ipset containing mac addresses

2015-11-03 Thread Jeremy Baker
On 10/30/2015 03:01 PM, Ed W wrote: > On 30/10/2015 18:52, Jeremy Baker wrote: >> Can I reference an ipset that contains mac addresses only from a >> shorewall rule? > > I haven't tried, but I think it's transparent to shorewall what is in > the ipset? You simply pa

[Shorewall-users] 6in4 tunnel, simple traffic shaping

2015-11-03 Thread Jeremy Baker
from three separate internal lans, but would like to extend that to the ipv6 traffic as well. How do I do that when the ipv6 traffic is encapsulated within the ipv4 before it goes out ppp0? -- Jeremy Baker <j...@mbcs.ca> GnuPGP fingerprint = EE66 AC49 E008 E09A 7A2A 0195 50EF 580B EDB

[Shorewall-users] ipset containing mac addresses

2015-10-30 Thread Jeremy Baker
Can I reference an ipset that contains mac addresses only from a shorewall rule? -- Jeremy Baker <j...@mbcs.ca> GnuPGP fingerprint = EE66 AC49 E008 E09A 7A2A 0195 50EF 580B EDB

[Shorewall-users] accounting rules

2015-09-11 Thread Jeremy Baker
Is there a command to zero the counters in the accountin, accountout, and accountfwd chains? -- Jeremy Baker <j...@mbcs.ca> GnuPGP fingerprint = EE66 AC49 E008 E09A 7A2A 0195 50EF 580B EDB