Eddy Geez wrote:
> 
> Looking at the iptables man page, it appears 'ctorigdstport' only
> accepts a single port and not a port range.
> 
> Is there a recommended course of action in this situation?

As a workaround:

a) shorewall show -f capabilities /etc/shorewall/capabilities
b) Edit /etc/shorewall/capabilities and change:

        NEW_CONNTRACK_MATCH=Yes

   to

        NEW_CONNTRACK_MATCH=

------------------------------------------------------------------------------
This SF.net email is sponsored by:
SourcForge Community
SourceForge wants to tell your story.
http://p.sf.net/sfu/sf-spreadtheword
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to