[Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Artur Uszyński
Hello. In a situation like this: - a firewall has two or more internet connections, - a firewall runs shorewall 4.5.1 (multiple isps configured) - one connection is broken, - default route in the main routing table leads through the failed connection, - a firewall is 2 km away from admin ;),

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Roberto C . Sánchez
On Thu, May 24, 2012 at 11:24:32AM +0200, Artur Uszyński wrote: Hello. In a situation like this: - a firewall has two or more internet connections, - a firewall runs shorewall 4.5.1 (multiple isps configured) - one connection is broken, - default route in the main routing table leads

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Angela Williams
Hi All On 05/24/12 11:24, Artur Uszyński wrote: Hello. In a situation like this: - a firewall has two or more internet connections, - a firewall runs shorewall 4.5.1 (multiple isps configured) - one connection is broken, - default route in the main routing table leads through the failed

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread emilianovazquez
I have ip static on the wan side. When i stop shorewall i only stop the lan side and i can still connecting over wan side (from another site) and over lan if i am working in the same place. I only put on /etc/shorewall/routestopped this line eth0- Where eth0 is my LAN nic. Regards!

[Shorewall-users] DNAT with marks howto?

2012-05-24 Thread Jan van der Vyver
Hi I have a server with 2 routers(192.168.254.1 and 192.168.254.3) connected on the same interface on the server(192.168.254.2). Both route to a 10.0.0.0/8 network. I have the following custom rules which sorts out the routing for me and below each have written the shorewall equivalent

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Tom Eastep
On 05/24/2012 02:24 AM, Artur Uszyński wrote: Hello. In a situation like this: - a firewall has two or more internet connections, - a firewall runs shorewall 4.5.1 (multiple isps configured) - one connection is broken, - default route in the main routing table leads through the failed

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread emilianovazquez
Tom where go the files saved with shorewall save command? If the restart command is not working the previos saved files go up again and lost the configuration in /etc/shorewall? Best regards Emiliano Emiliano Vazquez | PcCentro S.R.L. Callao 80 | CP 1022 | C.A.B.A. Office: +54

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Tom Eastep
On 05/24/2012 07:39 AM, emilianovazq...@gmail.com wrote: Tom where go the files saved with shorewall save command? If the restart command is not working the previos saved files go up again and lost the configuration in /etc/shorewall? The files from /etc/shorewall are *not* saved. Rather,

Re: [Shorewall-users] DNAT with marks howto?

2012-05-24 Thread Tom Eastep
On 05/24/2012 04:31 AM, Jan van der Vyver wrote: Hi I have a server with 2 routers(192.168.254.1 and 192.168.254.3) connected on the same interface on the server(192.168.254.2). Both route to a 10.0.0.0/8 network. I have the following custom rules which sorts out the routing for me and

[Shorewall-users] Shorewall 4.5.4 RC 2

2012-05-24 Thread Tom Eastep
RC 2 is now available for testing. This version corrects one problem: 1) Shorewall6 RC 1 failed to start due to a missing GeoIP action file. Also included are some documentation cleanup. Thank you for testing. -Tom -- Tom Eastep\ When I die, I want to go like my Grandfather who

Re: [Shorewall-users] Absent-minded admin + multi isp

2012-05-24 Thread Budiwijaya
From: Tom Eastep teas...@shorewall.net To: shorewall-users@lists.sourceforge.net Sent: Thursday, May 24, 2012 9:08 PM Subject: Re: [Shorewall-users] Absent-minded admin + multi isp A couple of things: a) Before making a configuration change, execute 'shorewall