Re: Shorewall maintenance

Phil Stracchino <[email protected]> Thu, 6 Feb 2025 12:55:31 -0500
Newsgroups gmane.comp.security.shorewall
Organization Fenian House Publishing
Message-ID <[email protected]>
On 2/6/25 08:36, Jlem wrote:
> Dear Shorewall friends,
> I have been using Shorewall for 20 years.
> I find it very close to the simple description of network use cases, 
> ignoring the assembly-like language that can be seen on other products.
> Thus we have a very readable and therefore very maintainable language.

Exactly.  This is what I love about Shorewall, and OpenBSD's pf that I 
used before it:  its rules are human-readable.  By contrast, the native 
ipchains/iptables/netfilter/whatever rules interface exposed by Linux is 
near-gibberish.


> As I am more of an ops than a dev, without being a network expert, after 
> having tried coding with AIs like Chat, Claude, DeepSeek, maybe the 
> current development conditions are really ideal to allow the project to 
> be relaunched, mainly to bring it to NFTs, or to promote the resolution 
> of host names in the rules.

I'm not sure what you mean by this, but I personally do not trust ANY 
code written by large language models.


-- 
   Phil Stracchino
   Fenian House Publishing
   [email protected]
   [email protected]
   Landline: +1.603.293.8485
   Mobile:   +1.603.998.6958