Nicolas Pillot wrote:
> Shorewall Geek <[EMAIL PROTECTED]>:
>>> Is this normal?
>> Yes.
> Ok, so it works as intended.
> Handing out network topology is not a real issue, but is somewhat
> disappointing !

Well -- if you are that disappointed, you can always prevent it!

Replace
        PING/ACCEPT     loc     $FW
with
        PING/ACCEPT     loc     $FW:<firewall's local ip address>

That will only allow ping to the <firewall's local ip address>

------------------------------------------------------------------------------
SF.Net email is Sponsored by MIX09, March 18-20, 2009 in Las Vegas, Nevada.
The future of the web can't happen without you.  Join us at MIX09 to help
pave the way to the Next Web now. Learn more and register at
http://ad.doubleclick.net/clk;208669438;13503038;i?http://2009.visitmix.com/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to