Adam Chapman wrote:


If I can show that the problem exists from the shorewall startup script are you interested in the problem then?


I have replied to Adam off-list about this but let me say publicly that I don't believe that this can be solved in the init scripts in any general way.

Adam says:

> I'd like to not have to rely on a domain name to get access to my box but > the alternative is leaving a wide range of ip addresses open to > accommodate for this which seems a bit pointless. I had rewritten a script > which logs the IP of the address and restarts the firewall if it detects a > change and that works pretty well.

If I were trying to solve this problem on my own firewall, I would create an ipset to represent the addresses to which northerner.no-ip.info resolves. The script that currently restarts the firewall would then simply have to update the ipset.

-Tom
--
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to