On 10/1/10 2:58 AM, Mr Dash Four wrote: > Could the output of this be customised (via a configuration file perhaps)? > > I am currently filtering the output of this to exclude elements I do not > need to see (like 'zone' for example), but it would be nice if I could > configure which 'columns' to show, in what order, to have different > names for each 'column' and, maybe, introduce colour-coding (to > highlight the secctx field with a particular value for example). Is that > doable?
I don't want to create a new filter language and embed it in Shorewall
(sed, awk, perl, ... are enough) but what I can do is support an
/etc/shorewall/scfilter script. If present and executable, Shorewall
(Shorewall6, Shorewall-lite,...) will pipe each connection through the
script.
I've prototyped it with the following trivial /etc/shorewall/scfilter file:
#!/bin/sh
sed 's/secmark=0 //'
That removes the secmark column, which I don't find interesting.
-Tom
--
Tom Eastep \ When I die, I want to go like my Grandfather who
Shoreline, \ died peacefully in his sleep. Not screaming like
Washington, USA \ all of the passengers in his car
http://shorewall.net \________________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Start uncovering the many advantages of virtual appliances and start using them to simplify application deployment and accelerate your shift to cloud computing. http://p.sf.net/sfu/novell-sfdev2dev
_______________________________________________ Shorewall-devel mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-devel
