On 9/27/2014 4:41 PM, Tom Eastep wrote:
> On 9/27/2014 2:50 PM, Tom Eastep wrote:
> 
>>
>> - The generated scripts would support a 'savesets' command, so that
>>   Shorewall-init could save the just those sets.
>>
> 
> Turns out that it isn't that hard, but I'll require ipset 5 or later.
> 

I've pushed a set of patches that allow SAVE_IPSETS to specify a
comma-separated list of ipset names. Both shorewall.conf and
shorwall6.conf can specify a list, so the Shorewall-init SAVE_IPSETS
facility need not be used unless desired.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Meet PCI DSS 3.0 Compliance Requirements with EventLog Analyzer
Achieve PCI DSS 3.0 Compliant Status with Out-of-the-box PCI DSS Reports
Are you Audit-Ready for PCI DSS 3.0 Compliance? Download White paper
Comply to PCI DSS 3.0 Requirement 10 and 11.5 with EventLog Analyzer
http://pubads.g.doubleclick.net/gampad/clk?id=154622311&iu=/4140/ostg.clktrk
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to