Tom,

On Thu, Mar 6, 2008 at 1:36 PM, Tom Eastep <[EMAIL PROTECTED]> wrote:

> Tom Eastep wrote:
> >
> > See Shorewall FAQ 62 and either
>

Ah, thank you for this and b) and c) below.  I'm using Shorewall 4 already,
so I'll go that way.

>
> > a) Beat yourself violently about the head for ever believing that LDAP
> > authentication on a firewall was a good idea; or
>

This is an intranet server on the loc subnet.  I just like shorewall better
than /etc/sysconfig/iptables.  Do I still have to beat myself?  What if I
promise to read every single FAQ from 1 to 76, can I avoid the violence,
then?

      John


> > b) List your LDAP server(s) IP address(es) in
> > /etc/shorewall/routestopped with the 'critical' option and hope for the
> > best.
>
> or
>
> c) Upgrade to Shorewall 4 and migrate to Shorewall-perl which doesn't
> have this problem.
>
> -Tom
> --
> Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
> Shoreline,     \ http://shorewall.net
> Washington USA  \ [EMAIL PROTECTED]
> PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key
>
>
> -------------------------------------------------------------------------
> This SF.net email is sponsored by: Microsoft
> Defy all challenges. Microsoft(R) Visual Studio 2008.
> http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
> _______________________________________________
> Shorewall-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>
>
-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to