It appears that you are misunderstanding what those commands do.   See
http://www.shorewall.net/starting_and_stopping_shorewall.htm#id2507868 for
more detail.

- Bob Coffman

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Jim Ford
Sent: Wednesday, January 11, 2006 1:27 PM
To: leaf-user
Subject: [leaf-user] Port Knocking Shorewall command?


With the view of including Shorewall commands to open and close the ssh port
25 when accessed from the internal network, I tried the following line from
a command prompt:

shorewall allow 192.168.11.0/24:25

Which evoked the response from shorewall: Not dropping or rejecting from
192.168.11.0/24:25 - which seemed to be what I wanted. I then tried closing
the port with the similar line:

shorewall drop 192.68.11.0/24:25

This produced an error, refering to iptables.

What would be the correct lines to do what I would like, please? (I'd rather
do it with shorewall. For now at least, iptables is a can of worms that
shall be firmly kept closed!)

Jim Ford 



-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://ads.osdn.com/?ad_id=7637&alloc_id=16865&op=click
------------------------------------------------------------------------
leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/



-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://ads.osdn.com/?ad_idv37&alloc_id865&op=click
------------------------------------------------------------------------
leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/

Reply via email to