net-firewall/shorewall (gentoo)

Search

Install

Install this package:

emerge -a net-firewall/shorewall

Package Information

Description:
The Shoreline Firewall, more commonly known as "Shorewall", is high-level tool for configuring Netfilter. You describe your firewall/gateway requirements using entries in a set of configuration files. Shorewall reads those configuration files and with the help of the iptables, iptables-restore, ip and tc utilities, Shorewall configures Netfilter and the Linux networking subsystem to match your requirements. Shorewall can be used on a dedicated firewall system, a multi-function gateway/router/server or on a standalone GNU/Linux system. Shorewall does not use Netfilter's ipchains compatibility mode and can thus take advantage of Netfilter's connection state tracking capabilities. Shorewall is not a daemon. Once Shorewall has configured the Linux networking subsystem, its job is complete and there is no "Shorewall process" left running in your system. The /usr/sbin/shorewall program can be used at any time to monitor the Netfilter firewall.
Homepage:
https://shorewall.org/
License:
GPL-2

Versions

Version EAPI Keywords Slot
5.2.8 7 ~alpha amd64 ~hppa ppc ppc64 ~sparc x86 0

Metadata

Description

Maintainers

Upstream

Raw Metadata XML
<pkgmetadata>
	<maintainer type="project">
		<email>netmon@gentoo.org</email>
		<name>Gentoo network monitoring and analysis project</name>
	</maintainer>
	<longdescription lang="en">
		The Shoreline Firewall, more commonly known as "Shorewall", is high-level tool for configuring Netfilter.
		You describe your firewall/gateway requirements using entries in a set of configuration files.
		Shorewall reads those configuration files and with the help of the iptables, iptables-restore, ip and
		tc utilities, Shorewall configures Netfilter and the Linux networking subsystem to match your requirements.
		Shorewall can be used on a dedicated firewall system, a multi-function gateway/router/server or on a
		standalone GNU/Linux system. Shorewall does not use Netfilter's ipchains compatibility mode and can thus
		take advantage of Netfilter's connection state tracking capabilities.

		Shorewall is not a daemon. Once Shorewall has configured the Linux networking subsystem, its job is complete and
		there is no "Shorewall process" left running in your system. The /usr/sbin/shorewall program can be used at
		any time to monitor the Netfilter firewall.
	</longdescription>
	<use>
		<flag name="init">Adds the capability to place the firewall in a safe state prior to bringing up the network interfaces</flag>
		<flag name="ipv4">Installs everything needed to create a full IPv4 firewall</flag>
		<flag name="ipv6">Adds the capability to create a full IPv6 firewall (requires <pkg>net-firewall/shorewall</pkg> ipv4 USE flag)</flag>
		<flag name="lite4">Installs everything needed to just *run* an IPv4 compiled firewall script created with <pkg>net-firewall/shorewall</pkg> ipv4 USE flag</flag>
		<flag name="lite6">Installs everything needed to just *run* an IPv6 compiled firewall script created with <pkg>net-firewall/shorewall</pkg> ipv6 USE flag</flag>
	</use>
	<upstream>
		<doc lang="en">http://shorewall.net/Documentation_Index.html</doc>
		<remote-id type="sourceforge">shorewall</remote-id>
	</upstream>
</pkgmetadata>

Lint Warnings

USE Flags

Manage flags for this package: euse -i <flag> -p net-firewall/shorewall | euse -E <flag> -p net-firewall/shorewall | euse -D <flag> -p net-firewall/shorewall

Flag Description 5.2.8
doc Add extra documentation (API, Javadoc, etc). It is recommended to enable per package instead of globally ✓
init Adds the capability to place the firewall in a safe state prior to bringing up the network interfaces ⊕
ipv4 Installs everything needed to create a full IPv4 firewall ⊕
ipv6 Adds the capability to create a full IPv6 firewall (requires <pkg>net-firewall/shorewall</pkg> ipv4 USE flag) ✓
lite4 Installs everything needed to just *run* an IPv4 compiled firewall script created with <pkg>net-firewall/shorewall</pkg> ipv4 USE flag ✓
lite6 Installs everything needed to just *run* an IPv6 compiled firewall script created with <pkg>net-firewall/shorewall</pkg> ipv6 USE flag ✓
selinux !!internal use only!! Security Enhanced Linux support, this must be set by the selinux profile or breakage will occur ✓

Files

Manifest

Type File Size Versions
DIST shorewall-5.2.8.tar.bz2 574427 bytes 5.2.8
DIST shorewall-core-5.2.8.tar.bz2 77980 bytes 5.2.8
DIST shorewall-init-5.2.8.tar.bz2 42589 bytes 5.2.8
DIST shorewall-lite-5.2.8.tar.bz2 47250 bytes 5.2.8
DIST shorewall6-5.2.8.tar.bz2 203102 bytes 5.2.8
DIST shorewall6-lite-5.2.8.tar.bz2 47178 bytes 5.2.8
Unmatched Entries
Type File Size
DIST shorewall-docs-html-5.2.8.tar.bz2 4322407 bytes