It appears that you are misunderstanding what those commands do. See http://www.shorewall.net/starting_and_stopping_shorewall.htm#id2507868 for more detail.
- Bob Coffman -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jim Ford Sent: Wednesday, January 11, 2006 1:27 PM To: leaf-user Subject: [leaf-user] Port Knocking Shorewall command? With the view of including Shorewall commands to open and close the ssh port 25 when accessed from the internal network, I tried the following line from a command prompt: shorewall allow 192.168.11.0/24:25 Which evoked the response from shorewall: Not dropping or rejecting from 192.168.11.0/24:25 - which seemed to be what I wanted. I then tried closing the port with the similar line: shorewall drop 192.68.11.0/24:25 This produced an error, refering to iptables. What would be the correct lines to do what I would like, please? (I'd rather do it with shorewall. For now at least, iptables is a can of worms that shall be firmly kept closed!) Jim Ford ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://ads.osdn.com/?ad_id=7637&alloc_id=16865&op=click ------------------------------------------------------------------------ leaf-user mailing list: leaf-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/leaf-user Support Request -- http://leaf-project.org/ ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://ads.osdn.com/?ad_idv37&alloc_id865&op=click ------------------------------------------------------------------------ leaf-user mailing list: leaf-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/leaf-user Support Request -- http://leaf-project.org/