Updates are available at http://www.shorewall.net/pub/shorewall/3.2/shorewall-3.2.5/
1) If a DNAT or REDIRECT rule was used where the effective policy
between the source and final destination zones is ACCEPT, the ACCEPT
part of the rule was not generated. This could lead to confusing
results if there was a DROP or REJECT rule following.
2) If "all+" appeared in a rule then "all" appearing in following rules
was treated like "all+".
For both problems, either:
a) Replace /usr/share/shorewall/compiler and
/usr/share/shorewall/functions with the 'compiler' and
'functions' files from the errata/Shorewall/ sub-directory.
b) Patch /usr/share/shorewall/compiler and
/usr/share/shorewall/functions with the patch-3.2.5-4.diff patch
from the errata/patches directory.
-Tom
--
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ [EMAIL PROTECTED]
PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------- Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
