Bill,Thanks for reply. I'm very uncertain what it should be changed too. Thom E. published the setting in an email to help out on a problem I was having getting IPv4 ipsets to work.
Nigel. On 2/22/2017 7:41 PM, Bill Shirley wrote:
Look at the LOGTAGONLY section of this page: http://www.shorewall.org/shorewall_logging.html It has an example of using a more meaningful tag (IPv6 tunneling). Bill On 2/22/2017 7:56 PM, Nigel Aves wrote:I recently implemented "blacklist if connection attempt on unused port" from Tom's help and one of the rules was the following:- ADD(SW_DBL4:src):info net $FW When I do a configuration check I get the following warning Checking /usr/share/shorewall/action.Drop for chain Drop... Checking /usr/share/shorewall/action.Broadcast for chain Broadcast... *WARNING: Log Prefix shortened to "Shorewall:net-fw:ADD(SW_DBL4 " /etc/shorewall/rules (line 121)* Checking /etc/shorewall/conntrack... Checking MAC Filtration -- Phase 2... not sure if this is causing an issue or not, but thought I should pass it along. Nigel Aves. -- from the desk of Nigel http://soft-focus-imagining.com http://twin-peaks-video.com ------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, SlashDot.org! http://sdm.link/slashdot _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, SlashDot.org! http://sdm.link/slashdot _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
-- from the desk of Nigel http://soft-focus-imagining.com http://twin-peaks-video.com
<<attachment: nigel.vcf>>
------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
