On Sun, Aug 17, 2014, at 08:03 PM, Tom Eastep wrote:
> > Does shorewall-init need to be installed on each remote target, or only on 
> > the administrative machine?

> Shorewall-init must be installed on the firewall systems and the
> PRODUCTS are those installed on the firewall systems.

That's now clear.  Thanks.

Must 'shorewall' & 'shorewall6' pkgs, then, be also installed on all systems 
that have shorewall-init installed?

Or is the 'Requires' install dependency for both shorewall/shorewall6 by the 
distro packaging incorrect, and just shorewall-lite+shorewall-init sufficient?

E.g., @ Opensuse pkg,

        zypper info --requires shorewall-init
                Loading repository data...
                Reading installed packages...


                Information for package shorewall-init:
                ---------------------------------------
                Repository: Netfilter
                Name: shorewall-init
                Version: 4.6.2.5-148.1
                Arch: noarch
                Vendor: obs://build.opensuse.org/security
                Installed: Yes
                Status: up-to-date
                Installed Size: 63.2 KiB
                Summary: Adds functionality to Shoreline Firewall (Shorewall)
                Description: 
                The Shoreline Firewall, more commonly known as "Shorewall", is 
a Netfilter
                (iptables) based firewall that can be used on a dedicated 
firewall system,
                a multi-function gateway/ router/server or on a standalone 
GNU/Linux system.

                Shorewall Init is a companion product to Shorewall that allows 
for tigher
                control of connections during boot and that integrates 
Shorewall with
                ifup/ifdown and NetworkManager.
                Requires:
                /bin/bash
                logrotate
>>>             shorewall6 > 4.4.9
>>>             shorewall > 4.4.9
                /bin/sh
                systemd




------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to