Hello Matt,

I still do not understand this. But now it works after a restart of the 
computer.

> The only thing that I can say is that you need to understand the Docker
> interfaces mechanism then you will be able to configure Shorewall.

> At this point, (1) is all I can do.

>  1) https://gist.github.com/lukasnellen/20761a20286f32efc396e207d986295d


/etc/shorewall/interfaces :

?FORMAT 2
net     wlp2s0
net     wlp0s20f0u1
net     enp0s31f6
# dock    docker0         bridge
dock    docker0         physical=docker+,routeback=1
dock    br                   physical=br-+,routeback=1


~       
/etc/shorewall/policy:

$FW     net     ACCEPT

dock    $FW     REJECT
dock    all     ACCEPT

$FW     dock    ACCEPT
#net    all     DROP    info
all     all     REJECT  info



/etc/shorewall/zones:

net     ipv4
fw      firewall
dock    ipv4        #'dock' is just an example -- call it anything you like

/etc/shorewall.conf:

...
DOCKER=Yes
...


What does this "physical="  and "routeback"part do?




- Franz



_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to