This directory contains a set of parameter-driven sample configurations.
They can serve as a quick way to get Shorewall up and running in
one of three popular environments and can be further customized to
handle more unusual requirements.

All samples assume a SINGLE INTERNET ADDRESS.

one-interface

	A standalone system.

two-interfaces

	A masquerading firewall with an interface to the internet and
	an interface to a local network. The local network is masqueraded
	to the internet.

three-interfaces

	A masquerading firewall with a DMZ. Both the DMZ and the Internal
	network are masqueraded to the internet.

IMPORTANT: If your requirements don't match EXACTLY the above description of
           the sample you want to use then you will have to modify the
	   configuration files manually.

As released, the samples have limited support it terms of their flexibility
and and the number of servers that they support. They should be easy
for you to extend, however, if you have the need.

To use one of these samples:

a) Install shorewall but to not modify any of the configuration files.
b) Select the sample that matches your setup and copy the sample
   files to /etc/shorewall overwriting the files that are there.
c) Edit /etc/shorewall/params to match your setup and needs.
