I've managed to get Bering/Shorewall running, and am happy with the rules that I've set in Shorewall to define which packets can pass, and which should be dropped.
Shorewall is logging packets which are rejected/blocked, which I believe is correct. Having reviewed the blocked packets, I'm happy that it did block them - most of them are SQL Slammer probes on UDP/1434. So.... Why does the web-interface show the Firewall as "Error" when there are lots of rejected/dropped packets? Surely that's what the Firewall should be doing? Or am I completely wrong? Thanks Nick ------------------------------------------------------- This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven. http://thinkgeek.com/sf ------------------------------------------------------------------------ leaf-user mailing list: [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html