That's a good question and I've wondered that myself a time or two...

On Jun 13, 2009, at 7:55, Colin Alston <colin.als...@thusa.co.za> wrote:

> I've been digging through the various manuals and am a bit irritated  
> with limitation on the rules system
>
> Why do I have to specify a source zone to allow a source IP range on  
> all zones? There is no iptables requirement for anything more than a  
> source address, so I don't understand why all:<ip> does not just add  
> an accept rule into the head of the INPUT chain or even simply  
> assume expanding that rule to all zones.
> --- 
> --- 
> --- 
> ---------------------------------------------------------------------
> Crystal Reports - New Free Runtime and 30 Day Trial
> Check out the new simplified licensing option that enables unlimited
> royalty-free distribution of the report engine for externally facing
> server and web deployment.
> http://p.sf.net/sfu/businessobjects
> _______________________________________________
> Shorewall-users mailing list
> Shorewall-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/shorewall-users

------------------------------------------------------------------------------
Crystal Reports - New Free Runtime and 30 Day Trial
Check out the new simplified licensing option that enables unlimited
royalty-free distribution of the report engine for externally facing 
server and web deployment.
http://p.sf.net/sfu/businessobjects
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to