Shorewall 4.4/4.5 Documentation

Tom Eastep

Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation; with no Invariant Sections, with no Front-Cover, and with no Back-Cover Texts. A copy of the license is included in the section entitled GNU Free Documentation License.

2013/12/19


Table of Contents

Frequently Used Articles
Documentation for Earlier Versions
Index to the HOWTOs and Other Articles

Frequently Used Articles

Documentation for Earlier Versions

Shorewall 4.0/4.2 Documentation

Index to the HOWTOs and Other Articles

6to4 and 6in4 TunnelsLinux Containers (LXC)Shorewall on a Laptop
AccountingLinux-vserverShorewall Perl
ActionsLimiting Connection RatesShorewall Setup Guide
Aliased (virtual) Interfaces (e.g., eth0:0)LoggingSMB
Anatomy of ShorewallMacrosSNAT (Source Network Address Translation)
Anti-Spoofing MeasuresMAC VerificationSplit DNS the Easy Way
AUDIT Target supportManpages (IPv4) (IPv6)Squid with Shorewall
Bandwidth ControlManual ChainsStarting/stopping the Firewall
Blacklisting/WhitelistingMasqueradingStatic (one-to-one) NAT
Bridge: Bridge/FirewallMultiple Internet Connections from a Single FirewallSupport
Bridge: No firewalling of traffic between bridge portMultiple Zones Through One InterfaceTips and Hints
Building Shorewall from GITMy Shorewall ConfigurationTraffic Shaping/QOS - Simple
CommandsNetfilter OverviewTraffic Shaping/QOS - Complex
Configuration File BasicsNetwork MappingTransparent Proxy
DHCPOne-to-one NAT (Static NAT)UPnP
DNAT (Destination Network Address Translation)OpenVPNOpenVZ
Dynamic ZonesOpenVZUpgrade Issues
ECN Disabling by host or subnetOperating ShorewallUpgrading to Shorewall 4.4 (Upgrading Debian Lenny to Squeeze)
EventsPacket MarkingVPN
Extension Scripts (User Exits)Packet Processing in a Shorewall-based FirewallVPN Passthrough
Fallback/Uninstall'Ping' ManagementWhite List Creation
FAQsPort ForwardingXen - Shorewall in a Bridged Xen DomU
FeaturesPort InformationXen - Shorewall in Routed Xen Dom0
Forwarding Traffic on the Same InterfacePort Knocking (deprecated) 
FTP and ShorewallPort Knocking, Auto Blacklisting and Other Uses of the 'Recent Match' 
Fool's FirewallPPTP 
Helpers/Helper ModulesProxy ARP 
Installation/UpgradeQuickStart Guides 
IPP2PRelease Model 
IPSECRequirements 
IpsetsRouting and Shorewall 
IPv6 SupportRouting on One Interface 
ISO 3661 Country CodesSamba 
Kazaa FilteringShorewall Events 
Kernel ConfigurationShorewall Init 
KVM (Kernel-mode Virtual Machine)Shorewall Lite