Brian Camp wrote:
> I understand  
> that shorewall check should not run the start file, but is it  
> necessary that it loads the modules file?  It seems that something  
> like shorewall check should produce no side effects.

The 'check' command validates the configuration against the capabilities
of iptables and the kernel. It can't do that without loading the
necessary modules.

Would you rather have 'shorewall start' fail after a successful 'check'
when the required modules aren't available? I think not...

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to