Hi,
I exclusively use the "alternate specification of columns" because I find
it way more clearer to read.
>From time to time, I need to set a comment to a specific rule. It would be
really nice to add a new keyword "comment" to the alternate spec.
It would make the configuration a bit lighter to read. ie:
SSH(ACCEPT) { source=net:xxx dest=net comment="Special access for Jack" }
vs
?COMMENT Special acces for Jack
SSH(ACCEPT) { source=net:xxx dest=net }
?COMMENT
In a config file with heavy use of comments, this would help readability.
If possible make it available in every config file supporting comments.
Of course, it would be the responsability of the user to make sure any
double-quote in the comment is properly escaped. The compiler would just
complain about an invalid/malformed line in the respective configuration
file.
--
ObNox
------------------------------------------------------------------------------
What NetFlow Analyzer can do for you? Monitors network bandwidth and traffic
patterns at an interface-level. Reveals which users, apps, and protocols are
consuming the most bandwidth. Provides multi-vendor support for NetFlow,
J-Flow, sFlow and other flows. Make informed decisions using capacity planning
reports.http://sdm.link/zohodev2dev
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users