[Shorewall-users] Shorewall 5.0.0

2015-10-10 Thread Tom Eastep
The Shorewall Team is pleased to announce the availability of Shorewall 5.0.0. Problems Corrected: 1) This release includes defect repair up through Shorewall 4.6.13.1. 2) The compiled script now uses the %e date format rather than %_d, for Busybox compatibilty. (Erich Titl) New Features:

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-11 Thread Tuomo Soini
On Sat, 10 Oct 2015 12:25:28 -0700 Tom Eastep wrote: > The Shorewall Team is pleased to announce the availability of > Shorewall 5.0.0. > > Problems Corrected: > > 1) This release includes defect repair up through Shorewall 4.6.13.1. > > 2) The compiled script now uses the %e date format rat

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-11 Thread Dominic Benson
> On 11 Oct 2015, at 09:21, Tuomo Soini wrote: > > On Sat, 10 Oct 2015 12:25:28 -0700 > Tom Eastep wrote: > >> The Shorewall Team is pleased to announce the availability of >> Shorewall 5.0.0. >> >>a) Beginning with this release, the 'restart' command now does a >> true restart and

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-11 Thread Tuomo Soini
On Sun, 11 Oct 2015 10:55:44 +0100 Dominic Benson wrote: > > I am against this change. I vote for a change for this. Nobody > > expects firewall restart to stop traffic - ever. > > I don’t think that this follows; with this change ‘reload’ does The > Right Thing, and that is consistent with alm

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-11 Thread Tom Eastep
On 10/11/2015 11:19 AM, Tuomo Soini wrote: > On Sun, 11 Oct 2015 10:55:44 +0100 > Dominic Benson wrote: > > >>> I am against this change. I vote for a change for this. Nobody >>> expects firewall restart to stop traffic - ever. >> >> I don’t think that this follows; with this change ‘reload’ doe

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-12 Thread Simon Matter
> The Shorewall Team is pleased to announce the availability of Shorewall > 5.0.0. Hi Tom and Team, thanks for the new release and all the hard work you did on it! I'm wondering about the impact of the recent change concerning "WORKAROUNDS". Should I expect that shorewall-5 will still run on a

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-12 Thread Tuomo Soini
On Sun, 11 Oct 2015 14:23:50 -0700 Tom Eastep wrote: > > I'm happy to change the name. Wish we would have had this exchange > when the feature was introduced in Beta 1, though... Well. One reason was nobody else than me tested Betas here but I got more testers when I said 5.0.0 is out :-(. Anot

Re: [Shorewall-users] Shorewall 5.0.0

2015-10-12 Thread Tom Eastep
On 10/12/2015 09:05 AM, Simon Matter wrote: >> The Shorewall Team is pleased to announce the availability of Shorewall >> 5.0.0. > > > Hi Tom and Team, > > thanks for the new release and all the hard work you did on it! > > I'm wondering about the impact of the recent change concerning > "WORKA

[Shorewall-users] Shorewall 5.0.0 Beta 1

2015-09-09 Thread Tom Eastep
Shorewall 5.0.0 Beta 1 is now available for testing. You can read about Shorewall 5 at http://www.shorewall.org/Shorewall-5.html. Problems Corrected: 1) This release includes defect repair up through Shorewall 4.6.13. New Features: 1) To make the command names more accurately reflect what the

[Shorewall-users] Shorewall 5.0.0 Beta 2

2015-09-20 Thread Tom Eastep
Shorewall 5.0.0 Beta 2 is now available for testing. Problems Corrected since Beta 1: 1) Defect repair from Shorewall 4.6.13.1 has been merged. 2) Thanks to Tuomo Soini, the Shorewall products now support systemctl's 'reload' command. New Features since Beta 1: 1) Previously, when chain

[Shorewall-users] Shorewall 5.0.0 RC 1

2015-10-01 Thread Tom Eastep
Shorewall 5.0.0 RC 1 is now available for testing. Problems Corrected since 5.0.0 Beta 2 1) This release includes defect repair up through Shorewall 4.6.13.1. Thank you for testing. -Tom -- Tom Eastep\ When I die, I want to go like my Grandfather who Shoreline, \ died peaceful

Re: [Shorewall-users] Shorewall 5.0.0 Beta 1

2015-09-09 Thread johnny bowen
Why was BLACKLISTNEWONLY eliminated? Is there a substitution? (besides other tools like conntrack) It was handy with things like fail2ban where you might just do a shorewall drop on an established/related connection. On Wed, Sep 9, 2015 at 5:54 PM, Tom Eastep wrote: > Shorewall 5.0.0 Beta 1 is

Re: [Shorewall-users] Shorewall 5.0.0 Beta 1

2015-09-10 Thread Tom Eastep
On 9/9/2015 9:13 PM, johnny bowen wrote: > Why was BLACKLISTNEWONLY eliminated? > Is there a substitution? (besides other tools like conntrack) > > It was handy with things like fail2ban where you might just do a > shorewall drop on an established/related connection. As described at http://www.s

Re: [Shorewall-users] Shorewall 5.0.0 Beta 1

2015-09-10 Thread johnny bowen
Excellent. thank you. On Thu, Sep 10, 2015 at 9:04 AM, Tom Eastep wrote: > On 9/9/2015 9:13 PM, johnny bowen wrote: > > Why was BLACKLISTNEWONLY eliminated? > > Is there a substitution? (besides other tools like conntrack) > > > > It was handy with things like fail2ban where you might just do a