On Sat, 2011-09-17 at 15:39 -0700, Tom Eastep wrote:
> On Sep 17, 2011, at 3:20 PM, Christ Schlacta wrote:
> 
> > Can you recommend an alternate method to accomplish my desired outcome?  
> > I want to switch dynamically which host a (set of) dnat rules point to 
> > without having to restart shorewall.
> > 
> 
> Use iptables directly to insert and delete DNAT rules.

This feature (coming in 4.4.24) will be useful to you.

        http://www1.shorewall.net/configuration_file_basics.htm#Switches

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: This is a digitally signed message part

------------------------------------------------------------------------------
All of the data generated in your IT infrastructure is seriously valuable.
Why? It contains a definitive record of application performance, security
threats, fraudulent activity, and more. Splunk takes this data and makes
sense of it. IT sense. And common sense.
http://p.sf.net/sfu/splunk-d2dcopy2
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to