Re: [Shorewall-users] Limits for logging DROP?

2010-02-15 Thread Tom Eastep
Brian Schang wrote: > Hello: > > On 2/14/2010 4:00 PM, Tom Eastep wrote: > >> In /etc/shorewall/action.LogLimit >> >> LOG:info- - - - - s:1/hour:1 > > While using the 'limit' match worked fine, becoming IP-specific with > 'hashlimit' has not been working. More s

Re: [Shorewall-users] Shorewall doesn't know wlan0 is up

2010-02-15 Thread Tom Eastep
Grant wrote: > I get the following when trying to start shorewall: > > WARNING: Zone loc is empty > ERROR: Unable to determine the routes through interface "wlan0" > > My interfaces file has: > > loc wlan0 detect tcpflags,detectnets,nosmurfs > > Where d

Re: [Shorewall-users] Shorewall doesn't know wlan0 is up

2010-02-15 Thread Grant
>> # ip route ls dev wlan0 >> # /etc/init.d/shorewall restart >>  * Restarting firewall ... >>    WARNING: Zone loc is empty >>    Shorewall is not running >>    ERROR: Unable to determine the routes through interface "wlan0" > > You appear to have no IP configuration on wlan0 yet you have defined

[Shorewall-users] Traffic Shaping on a machine that isn't just a firewall

2010-02-15 Thread Wesley
Hi, I'm using Shorewall 4.2.10 in Ubuntu 9.10, and I tried to set up some Traffic Shaping in my network since I share it with my brother and he's using more than he should. Since this is an old version, I'm using TC_ENABLED=Internal. Everything is working nicely except for the localhost. It falls

[Shorewall-users] Adding download control for internal interface - qdisk errors out

2010-02-15 Thread Nigel Aves
Shorewall version 4.4.7 I have managed to configure Shorewall successfully for traffic shaping on the upload and that all seems to be working ok. Today I'm trying to control downloading as well, rather than using Squids delay pools. I followed the on-line documentation but when I try to start Sho

Re: [Shorewall-users] Adding download control for internal interface - qdisk errors out

2010-02-15 Thread Trent O'Callaghan
Hi Nigel, The issue you are seeing: RTNETLINK answers: File exists ERROR: Command "tc qdisc add dev eth1 parent 2:2 handle 2: sfq quantum 1500 limit 127 perturb 10" Failed Processing /etc/shorewall/stop Can be resolved by running tc qdisc del dev eth1 root before adding the new sett

Re: [Shorewall-users] Adding download control for internal interface - qdisk errors out

2010-02-15 Thread Tom Eastep
Nigel Aves wrote: > Shorewall version 4.4.7 > > I have managed to configure Shorewall successfully for traffic shaping on > the upload and that all seems to be working ok. > > Today I'm trying to control downloading as well, rather than using Squids > delay pools. I followed the on-line documenta

Re: [Shorewall-users] Adding download control for internal interface - qdisk errors out

2010-02-15 Thread Tom Eastep
Trent O'Callaghan wrote: > Hi Nigel, > > The issue you are seeing: > RTNETLINK answers: File exists >ERROR: Command "tc qdisc add dev eth1 parent 2:2 handle 2: sfq quantum > 1500 limit 127 perturb 10" Failed Processing /etc/shorewall/stop > > Can be resolved by running > > tc qdisc del