Andrew Suffield wrote:
> Is there a good reason why '/sbin/shorewall load host' does not run
> 'ssh host /usr/share/shorewall-lite/shorecap > capabilities' (or
> whatever the correct incantation is here) before compiling? I can't
> see any particular reason why I should have to do that part myself,
> and it would be one less detail to remember.

The capabilities will only change if you upgrade the kernel or iptables on the
remote host so it seems silly to re-capture them on every [re]load. But I
suppose that I could offer an option to the '[re]load' command that would do 
that.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to