On 10/1/10 2:58 AM, Mr Dash Four wrote:
> Could the output of this be customised (via a configuration file perhaps)?
> 
> I am currently filtering the output of this to exclude elements I do not 
> need to see (like 'zone' for example), but it would be nice if I could 
> configure which 'columns' to show, in what order, to have different 
> names for each 'column' and, maybe, introduce colour-coding (to 
> highlight the secctx field with a particular value for example). Is that 
> doable?

I don't want to create a new filter language and embed it in Shorewall
(sed, awk, perl, ... are enough) but what I can do is support an
/etc/shorewall/scfilter script. If present and executable, Shorewall
(Shorewall6, Shorewall-lite,...) will pipe each connection through the
script.

I've prototyped it with the following trivial /etc/shorewall/scfilter file:

        #!/bin/sh
        sed 's/secmark=0 //'

That removes the secmark column, which I don't find interesting.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Start uncovering the many advantages of virtual appliances
and start using them to simplify application deployment and
accelerate your shift to cloud computing.
http://p.sf.net/sfu/novell-sfdev2dev
_______________________________________________
Shorewall-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-devel

Reply via email to