On 1/29/2014 7:39 AM, Fred Maillou wrote:
> With version 4.5.5.3 I get the following:
> 
> Compiling /usr/share/shorewall/action.RST for chain RST...
>    ERROR: Invalid parameter (LOG) to action NotSyn
> /usr/share/shorewall/action.RST (line 55)
>       from /etc/shorewall/rules (line 15)
> 
> rules has only one entry:
> 
> RST(LOG)        all     all
> 
> Thanks.
> 
> 
> 
> Le mercredi 29 janvier 2014 8h09, Fred Maillou <[email protected]> a
> écrit :
> Hi,
> 
>> Your Shorewall version isn't recent enough to be able to add such a rule
>> then.
> 
> Version is 4.5.2.2.  I see that the most recent version includes an
> action.RST file.  Would it be possible to copy that file into a 4.5.2.2
> installation and have it work ?  I need to do offsite troubleshooting
> without having to upgrade shorewall.

No.  You can always insert the rule manually:

iptables -I <chain> <rulenumber> -p tcp --tcp-flags RST RST -j LOG
--log-level <level> --log-prefix "whatever"

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
WatchGuard Dimension instantly turns raw network data into actionable 
security intelligence. It gives you real-time visual feedback on key
security issues and trends.  Skip the complicated setup - simply import
a virtual appliance and go from zero to informed in seconds.
http://pubads.g.doubleclick.net/gampad/clk?id=123612991&iu=/4140/ostg.clktrk
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to