Re: Can I ignore failing rules?

Tuomo Soini <[email protected]> Wed, 28 Feb 2024 20:24:00 +0200
Newsgroups gmane.comp.security.shorewall
Organization Foobar Oy
Message-ID <[email protected]>
On Wed, 28 Feb 2024 17:49:37 +0100
Peter Thurner | Blunix GmbH via Shorewall-users
<[email protected]> wrote:

> Hello shorewall users,
> 
> is there a way to ignore failing rules in shorewall, specifically if
> /etc/shorewall/rules contains something like
> 
> ACCEPT local pub:this.domain.doesnt.exist.com tcp 443

I suggest you read this part of documentation before using dns names in
your config. Especially the first Caution.

https://shorewall.org/manpages/shorewall-names.html#idm30


-- 
Tuomo Soini <[email protected]>
Foobar Linux services
+358 40 5240030
Foobar Oy <https://foobar.fi/>