Is there a (reasonable/simple) way to send "shorewall drop/shorewall 
allow" commands to a firewall from a machine in the DMZ?

I have a DNS server running in my DMZ behind a three interface 
shorewall firewall. I have started to see some DOS attacks on the 
name server and would like to be able to automate dropping traffic 
from the offending IP addresses at the firewall rather than at the 
DNS server.

Thanks.

--Richard

----------------------------------
I'm not allowed to run the train
The whistle I can't blow...
I'm not allowed to say how far
The railroad cars can go.
I'm not allowed to shoot off steam,
Nor even clang the bell¦
But let the damn train jump the track
And see who catches Hell!



------------------------------------------------------------------------------
This SF.net email is sponsored by:
SourcForge Community
SourceForge wants to tell your story.
http://p.sf.net/sfu/sf-spreadtheword
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to