Tom Eastep wrote:

> I am always willing to help users who have Shorewall problems but I'm
> not available to act as a Linux networking tutor for you, no matter how
> eager you are.

I will give you one piece of advice, however. Set IMPLICIT_CONTINUE=No
in shorewall.conf; you will find that your log messages will make more
sense.

And if you ask any more questions, please include the actual log
messages and configuration data that you used to draw your conclusions;
Otherwise, we can't take your assertions seriously.

For example, you said that you see two output messages on $FW->VPN
traffic -- I suspect that one of them was a DNS query which is why you
didn't see a similar message on VPN->$FW. Because if you are logging
using policies, you should only see one $FW->... message generated by
openvpn; when you first established the VPN connection.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to