Updates are available at
http://www.shorewall.net/pub/shorewall/3.2/shorewall-3.2.5/

1)  If a DNAT or REDIRECT rule was used where the effective policy
    between the source and final destination zones is ACCEPT, the ACCEPT
    part of the rule was not generated. This could lead to confusing
    results if there was a DROP or REJECT rule following.

2)  If "all+" appeared in a rule then "all" appearing in following rules
    was treated like "all+".

    For both problems, either:

    a) Replace /usr/share/shorewall/compiler and
       /usr/share/shorewall/functions with the 'compiler' and
       'functions' files from the errata/Shorewall/ sub-directory.

    b) Patch /usr/share/shorewall/compiler and
       /usr/share/shorewall/functions with the patch-3.2.5-4.diff patch
       from the errata/patches directory.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to