Re: [Shorewall-users] accept only from one MAC addr. on firewall

2019-10-11 Thread Tom Eastep
On 10/11/19 7:47 AM, Tom Eastep wrote: > On 10/11/19 1:51 AM, Vieri Di Paola wrote: >> On Thu, Oct 10, 2019 at 6:37 PM Tom Eastep wrote: >> This other rule seems to work: ACCEPT lan12,lan13:~00-E3-C0-5F-81-5D soc,s100all >>> >>> M

Re: [Shorewall-users] accept only from one MAC addr. on firewall

2019-10-11 Thread Tom Eastep
On 10/11/19 1:51 AM, Vieri Di Paola wrote: > On Thu, Oct 10, 2019 at 6:37 PM Tom Eastep wrote: > >>> This other rule seems to work: >>> >>> ACCEPT lan12,lan13:~00-E3-C0-5F-81-5D >>>soc,s100all >> >> MAC addresses may only be used in the SOURCE colu

Re: [Shorewall-users] accept only from one MAC addr. on firewall

2019-10-11 Thread Vieri Di Paola
On Thu, Oct 10, 2019 at 6:37 PM Tom Eastep wrote: > > This other rule seems to work: > > > > ACCEPT lan12,lan13:~00-E3-C0-5F-81-5D > >soc,s100all > > MAC addresses may only be used in the SOURCE column -- a careful reading > of shorewall-rules(5) s

Re: [Shorewall-users] accept only from one MAC addr. on firewall

2019-10-10 Thread Tom Eastep
On 10/9/19 12:26 AM, Vieri Di Paola wrote: > Hi, > > I'd like to accept traffic only from on eof the FW's MAC addresses to > another zone. > > I tried this: > > ACCEPT $FW:~00-E3-C0-5F-81-5D > soc,s100all > > but got this: > > ERROR: A MAC address(~00-E