From my look at the restore script created by shorewall 4.0.12 and shorewall-lite 4.0.8 I'm wondering why I don't see anything that would enable /proc/sys/net/ipv4/ip_forward for the "restore" code-path.
It would seem in define_firewall() that "echo 1 > /proc/sys/net/ipv4/ip_forward" is done if $COMMAND is anything other than restore however. Is there something about the restore case that should not enable ip_forward if shorewall.conf has IP_FORWARDING=On? Cheers, b.
signature.asc
Description: This is a digitally signed message part
------------------------------------------------------------------------------ Create and Deploy Rich Internet Apps outside the browser with Adobe(R)AIR(TM) software. With Adobe AIR, Ajax developers can use existing skills and code to build responsive, highly engaging applications that combine the power of local resources and data with the reach of the web. Download the Adobe AIR SDK and Ajax docs to start building applications today-http://p.sf.net/sfu/adobe-com
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users