Questions tagged [shorewall]

high-level tool for configuring the Linux Netfilter packet filter

The Shoreline Firewall, more commonly known as “Shorewall”, is high-level tool for configuring Netfilter. You describe your firewall/gateway requirements using entries in a set of configuration files. Shorewall reads those configuration files and with the help of the iptables, iptables-restore, ip and tc utilities, Shorewall configures Netfilter and the Linux networking subsystem to match your requirements. Shorewall can be used on a dedicated firewall system, a multi-function gateway/router/server or on a standalone GNU/Linux system. Shorewall does not use Netfilter's ipchains compatibility mode and can thus take advantage of Netfilter's connection state tracking capabilities.

Official website

95 questions
0
votes
0 answers

Shorewall - One external IP for two hosts with nginx and keepalived

I'm following this tutorial to setup keepalived: https://www.redhat.com/sysadmin/keepalived-basics It requires two hosts to share one external IP, where the second host is the failover. I'm unsure how to go about this, and I have been searching for…
0
votes
1 answer

How to uninstall shorewall completely from Ubuntu

I noticed on my some servers shorewall service is installed but it's not running.I want to uninstall it. I executed the command sudo systemctl status shorewall to check status of shorewall and got the below output. shorewall.service - Shorewall IPv4…
-1
votes
1 answer

Shorewall forward 443 port to two servers

I have a question/problem. I have two webservers. One is a webmail and the other one is a standard webserver. I need to forward 443 port to both of them. I have added proxyarp to the shorewall and added rules like this to the rules file: WEBMAIL: …
cr0c
  • 1,116
  • 3
  • 15
  • 32
-1
votes
1 answer

Shorewall - port forwarding

I have a bit of a problem with my shorewall setup. Here is a copy of my rules file: DNAT fw wan:172.16.1.224:6999 tcp 80 DNAT net wan:172.16.1.218 tcp 7000 And here is my zones: fw firewall wan ipv4 loc …
Eamorr
  • 596
  • 5
  • 13
  • 27
-1
votes
1 answer

bind9 not resolving intranetlinks

As a follow up to a question I've asked earlier: Linux server migration to Windows workstation. A supplier got us a new network-card yesterday, but no harddrives so far. I've also bit the bullet on reconfiguring the server as there was too much…
1 2 3 4 5 6
7