On 13/03/2012 22:42, Tom Eastep wrote:
> On 03/13/2012 02:57 PM, Don Tucker wrote:
>
>>> -Tom
>> Just to make sure I understand, are you saying that I do NOT need to
>> restart shorewall if pppd doesn't add a default route for ppp0?
> Running 4.4.11.6, if ppp0 is listed in /etc/shorewall/providers then you
> need to 'shorewall restart' when it goes up or down.

Just to enhance Tom's answer.  Shorewall is only managing interfaces 
that are up and have IP addresses *at the point shorewall is started*.

So if you bring up a PPP connection then you need to restart shorewall 
so that it's aware of it.  OR if restarting is a problem (usually not) 
then use a newer version of shorewall which Tom has kindly added an 
"enable" and "disable" feature so you can do this without a complete 
restart.

A compromise is to set PPP to dial on demand.  That way PPP can be "up" 
but not dialed into anything (so you can start it nice and early).  I 
concede I'm not 100% sure this doesn't still botch something, but you 
can test it...

Just trying to clarify that since it might not be immediately obvious!

Good luck

Ed W

------------------------------------------------------------------------------
Virtualization & Cloud Management Using Capacity Planning
Cloud computing makes use of virtualization - but cloud computing 
also focuses on allowing computing to be delivered as a service.
http://www.accelacomm.com/jaw/sfnl/114/51521223/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to