On 1/18/19 12:54 PM, Naveen Neelakanta wrote: > Thanks that was my last option, if I could not make the rule which was > an interface specific, so that I can avoid the duplicates in case, the > same rule is configured on another interface and also avoid getting > configĀ w.r.t to the direction for the traffic flow like ( trusted to > untrusted ) or ( untrusted to trusted) . > >
Naveen, If you are going to use Shorewall, you need to start thinking in terms of zones for rules rather than interfaces. -Tom -- Tom Eastep \ Q: What do you get when you cross a mobster with Shoreline, \ an international standard? Washington, USA \ A: Someone who makes you an offer you can't http://shorewall.org \ understand \_______________________________________________
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users