On 10/15/2015 04:54 AM, Thomas D. wrote:
> Hi,
> 
> is there a reason why we install
> 
> /etc/shorewall[6]?/zones
> /etc/shorewall[6]?/routes
> /etc/shorewall[6]?/params
> /etc/shorewall[6]?/actions
> /etc/shorewall/shorewall.conf
> /etc/shorewall6/shorewall6.conf
> 
> with file mode 0644 instead of 0600 like the other files?

There was a legacy reason for shorewall[6].conf and params - the
compiler used to read them unconditionally, so non-root users running
the compiler had to have read access to them. There is no reason for the
rest. I'll correct those.
> 
> 
> PS: The release tarball contains UIDs, you maybe want to add "--owner=0
> --group=0" to your tar command when creating the tarballs.
>  

Will do.

Thanks,
-Tom

-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-devel

Reply via email to