Man page - shorewall-modules(5)
Packages contas this manual
- shorewall-tcinterfaces(5)
- shorewall-proxyndp(5)
- shorewall-blrules(5)
- shorewall-nesting(5)
- shorewall-files(5)
- shorewall-tcfilters(5)
- shorewall-stoppedrules(5)
- shorewall-actions(5)
- shorewall-routes(5)
- shorewall-logging(5)
- shorewall-names(5)
- shorewall-interfaces(5)
- shorewall-rtrules(5)
- shorewall-arprules(5)
- shorewall-params(5)
- shorewall-proxyarp(5)
- shorewall-addresses(5)
- shorewall-maclist(5)
- shorewall-tcpri(5)
- shorewall-nat(5)
- shorewall-ipsets(5)
- shorewall-zones(5)
- shorewall-providers(5)
- shorewall-vardir(5)
- shorewall-accounting(5)
- shorewall-policy(5)
- shorewall-tcdevices(5)
- shorewall-rules(5)
- shorewall-tunnels(5)
- shorewall-conntrack(5)
- shorewall-exclusion(5)
- shorewall-ecn(5)
- shorewall-modules(5)
- shorewall-snat(5)
- shorewall-tcclasses(5)
- shorewall-mangle(5)
- shorewall-secmarks(5)
- shorewall-netmap(5)
- shorewall.conf(5)
- shorewall-init(8)
- shorewall-hosts(5)
apt-get install shorewall
Manual
| SHOREWALL-MODULES(5) | Configuration Files | SHOREWALL-MODULES(5) |
NAME
modules - Shorewall file
SYNOPSIS
/usr/share/shorewall[6]/modules
/usr/share/shorewall[6]/helpers
DESCRIPTION
These files specify which kernel modules Shorewall will load before trying to determine your iptables/kernel's capabilities.
The modules file is used when LOAD_HELPERS_ONLY=No in shorewall.conf[1](8); the helpers file is used when LOAD_HELPERS_ONLY=Yes
Important
Beginning with Shorewall 5.2.3, the LOAD_HELPERS_ONLY option has been removed and the behavior is the same as if LOAD_HELPERS_ONLY=Yes was specified.
Each record in the files has the following format:
loadmodule modulename [moduleoption...]
The modulename names a kernel module (without suffix). Shorewall will search for modules based on your MODULESDIR setting in shorewall.conf[1](8). The moduleoptions are passed to modprobe (if installed) or to insmod.
The /usr/share/shorewall/modules file contains a large number of modules. Users are encouraged to copy the file to /etc/shorewall/modules and modify the copy to load only the modules required or to use LOAD_HELPERS_ONLY=Yes..if n .sp
Note
If you build monolithic kernels and have not installed module-init-tools, then create an empty /etc/shorewall/modules file; that will prevent Shorewall from trying to load modules at all.
EXAMPLE
loadmodule ip_conntrack_ftp ports=21,221
FILES
/usr/share/shorewall/modules
/usr/share/shorewall/helpers
/etc/shorewall/modules
/etc/shorewall/helpers
/usr/share/shorewall6/modules
/usr/share/shorewall6/helpers
/etc/shorewall6/modules
/etc/shorewall6/helpers
SEE ALSO
shorewall(8)
NOTES
- 1.
- shorewall.conf
| 09/24/2020 | Configuration Files |