Package: shorewall Version: 2.0.15-1 Severity: normal Tags: patch There's a typo in /usr/share/shorewall/firewall that breaks the rejNotSyn action. Here's a fix:
--- firewall 2005-02-11 21:56:06.000000000 +0100 +++ /usr/share/shorewall/firewall 2005-02-11 21:38:24.000000000 +0100 @@ -2938,7 +2938,7 @@ [ "$COMMAND" != check ] && run_iptables -A dropNotSyn -p tcp ! --syn -j DROP ;; rejNotSyn) - [ "$COMMAND" != check ] && run_iptables -A rejectNotSyn -p tcp ! --syn -j REJECT --reject-with tcp-reset + [ "$COMMAND" != check ] && run_iptables -A rejNotSyn -p tcp ! --syn -j REJECT --reject-with tcp-reset ;; logNotSyn) log_action logNotSyn LOG = -- System Information: Debian Release: 3.1 APT prefers unstable APT policy: (500, 'unstable') Architecture: powerpc (ppc64) Kernel: Linux 2.6.11-rc3-mm1jk2 Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Juergen -- Juergen Kreileder, Blackdown Java-Linux Team http://www.blackdown.org/java-linux/java2-status/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]