Shorewall 4.5.9.2 is now available for download. Problems Corrected:
1) Previously, the rules in the 'routemark' chain did not specify a
mask in the MARK target. While a mask isn't strictly necessary in
those rules, one has been added to ally fears of those who read the
generated ruleset.
Note: The 'routemark' chain is used to apply provider marks to
packets received from 'track' provider interfaces. It is traversed
early in the mangle PREROUTING chain when no other marks have yet
been applied to the packet.
2) If exclusion was used with TPROXY in the tcrules file, an invalid
iptables ruleset was generated causing start and restart commands
to fail when running iptables-restore.
3) Previously, if a provider and its interface had the same name, then
the 'enable' command would not work on that interface.
Thank you for using Shorewall,
-Tom
--
Tom Eastep \ When I die, I want to go like my Grandfather who
Shoreline, \ died peacefully in his sleep. Not screaming like
Washington, USA \ all of the passengers in his car
http://shorewall.net \________________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Monitor your physical, virtual and cloud infrastructure from a single web console. Get in-depth insight into apps, servers, databases, vmware, SAP, cloud infrastructure, etc. Download 30-day Free Trial. Pricing starts from $795 for 25 servers or applications! http://p.sf.net/sfu/zoho_dev2dev_nov
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
