Jérôme Blion wrote: > > > Ok, I read the documentation. Replacing fw by $FW and wan by all works fine. > I understood that it will be not possible anymore to set up differents > rulesets in tos file by zone. Am I right?
If eth0 is your wan interface, you can do the following: #SOURCE DEST PROTOCOL SOURCE DEST TOS # PORTS PORTS $FW eth0 tcp 22 - 16 $FW eth0 tcp 3306 - 16 $FW eth0 tcp 80 - 2 #LAST LINE -- Add your entries above -- DO NOT REMOVE -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ [EMAIL PROTECTED] PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Still grepping through log files to find problems? Stop. Now Search log events and configuration files using AJAX and a browser. Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
