Re: Shorewall maintenance
Phil Stracchino <[email protected]> Thu, 6 Feb 2025 12:55:31 -0500
| Newsgroups | gmane.comp.security.shorewall |
|---|---|
| Organization | Fenian House Publishing |
| Message-ID | <[email protected]> |
On 2/6/25 08:36, Jlem wrote: > Dear Shorewall friends, > I have been using Shorewall for 20 years. > I find it very close to the simple description of network use cases, > ignoring the assembly-like language that can be seen on other products. > Thus we have a very readable and therefore very maintainable language. Exactly. This is what I love about Shorewall, and OpenBSD's pf that I used before it: its rules are human-readable. By contrast, the native ipchains/iptables/netfilter/whatever rules interface exposed by Linux is near-gibberish. > As I am more of an ops than a dev, without being a network expert, after > having tried coding with AIs like Chat, Claude, DeepSeek, maybe the > current development conditions are really ideal to allow the project to > be relaunched, mainly to bring it to NFTs, or to promote the resolution > of host names in the rules. I'm not sure what you mean by this, but I personally do not trust ANY code written by large language models. -- Phil Stracchino Fenian House Publishing [email protected] [email protected] Landline: +1.603.293.8485 Mobile: +1.603.998.6958