[Shorewall-newbies] How can I add a zone on a fixed public IP

Eugene Ventimiglia eventi at yahoo.com
Wed Feb 18 12:04:02 PST 2004

I've tried:

-       eth0    detect  routestopped
srv     eth1    detect  routestopped

ofc             eth0:
net             eth0:

$FW             all             ACCEPT
srv             all             ACCEPT
ofc             all             ACCEPT
net             all             DROP            info

When I try to connect from ofc to srv, I get the following in the log:

Feb 18 10:18:13 mkfrwsrv-nyc001 kernel: Shorewall:net2all:DROP:IN=eth0
OUT=eth1 SRC= DST= LEN=48 TOS=0x00 PREC=0x00
TTL=117 ID=12213 DF PROTO=TCP SPT=4289 DPT=3389 WINDOW=16384 RES=0x00 SYN

Any suggestions?

More information about the Shorewall-newbies mailing list