From: Tom E. <te...@sh...> - 2007-02-23 18:06:19
|
A fix for this problem is available at http://www1.shorewall.net/pub/shorewall/3.2/shorewall-3.2.9. See the known_problems.txt file in that directory. If IMPLICIT_CONTINUE=3DYes is in effect, then sub-zones receive the implicit CONTINUE policy for their intra-zone traffic (rather than the implicit ACCEPT policy for such traffic). This can cause intra-zone traffic to be rejected by rules or policies in one of the parent zones. The patch mentioned in the known_problems.txt file applies (with offset) = to all Shorewall 3.2 releases. The 'compiler' file should only be installed = if you are running 3.2.9. -Tom --=20 Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ te...@sh... PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key |