On Tuesday 22 November 2005 01:34, Erich Titl wrote:
> Kwon wrote:

>
> > The question is how can I or what is the best way to check for the
> > Shorewall “Stopped” condition after an unattended reboot?
>
> AFIK shorewall wants to know (detect) the addresse of the external
> interface in order to start.
>

Shorewall can be configured to start successfully before any interfaces are 
brought up but you must avoid using Shorewall features that require Shorewall 
to probe the current IP configuration. Two common examples are:

a) Do not use 'detect' in the BROADCAST column of /etc/shorewall/interfaces.
b) Do not use a device name in the SUBNET column of /etc/shorewall/masq.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: pgpibNYqKF4hU.pgp
Description: PGP signature

Reply via email to