On Thu, 20 Mar 2003, Doug Hite wrote:

> 
> Questions - 1) For the 3 local nics, do I need just one 
> "loc" in the zones file, or do I need "loc1", "loc2", ... ?  
> The 3 internal segments need traffic to flow between 
> them without restriction.

Place them all in a single 'loc' zone and include the following in your 
policy file:

loc     loc     ACCEPT

> 2) If I only have one "loc", do I then add 3 entries in
> the shorewall hosts file to map the interface to the
> segment ?

No -- simply specify 'loc' as the zone for all three entries in 
/etc/shorewall/interfaces.

-Tom
-- 
Tom Eastep    \ Shorewall - iptables made easy
Shoreline,     \ http://shorewall.sf.net
Washington USA  \ [EMAIL PROTECTED]



-------------------------------------------------------
This SF.net email is sponsored by: Tablet PC.  
Does your code think in ink? You could win a Tablet PC. 
Get a free Tablet PC hat just for playing. What are you waiting for? 
http://ads.sourceforge.net/cgi-bin/redirect.pl?micr5043en
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to