4.5.5 Beta 1 is now available for testing.
The problem corrected below is a rather serious one and I would like to
get the fix into Debian Wheezy prior to the freeze. I could put the fix
into 4.5.4 directly but the fix is large and affects three packages
(Shorewall, Shorewall-core and Shorewall-init); so I would like it to
get some testing done before merging it into the 4.5.4 branch.
Problems Corrected:
1) A number of defects in Shorewall-init have been corrected. Among
them:
a) The installer now enables startup at boot on Debian.
b) Interface up/down handling was using the 'restart' command; if an
interface was disabled, 'restart' didn't bring it up. Interface
up/down handling now uses the 'enable' and 'disable' commands
when an optional provider interface goes up or down.
New Features:
1) It is now possible to include additional information in netfilter
messages when using plain log levels (debug, info, ...). This is
done by following the level with a parenthesized comma-separated
list of "log options".
Valid log options are:
ip_options
Log messages will include the option settings from the IP
header.
macdecode
Decode the MAC address and protocol.
tcp_sequence
Include TCP sequence numbers.
tcp_options
Include options from the TCP header.
uid
Include the UID of the sending program; only effective for
packets originating on the firewall itself.
Example: info(tcp_options,tcp_sequence)
Thank you for testing,
-Tom
--
Tom Eastep \ When I die, I want to go like my Grandfather who
Shoreline, \ died peacefully in his sleep. Not screaming like
Washington, USA \ all of the passengers in his car
http://shorewall.net \________________________________________________
------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and
threat landscape has changed and how IT managers can respond. Discussions
will include endpoint security, mobile security and the latest in malware
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
_______________________________________________
Shorewall-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-devel