This article has multiple issues. Please help improve it or discuss these issues on the talk page. (Learn how and when to remove these template messages)(Learn how and when to remove this template message)
|Developer(s)||Thomas M. Eastep|
Shorewall is an open source firewall tool for Linux that builds upon the Netfilter (iptables/ipchains) system built into the Linux kernel, making it easier to manage more complex configuration schemes by providing a higher level of abstraction for describing rules using text files.
It is not a daemon since it does not run continuously, but rather configures rules in the kernel that allow and disallow traffic through the system. Shorewall is configured through a group of plain-text configuration files and does not have a graphical user interface, though a Webmin module is available separately. A monitoring utility packaged with Shorewall can be used to watch the status of the system as it operates and assist in testing.
Shorewall is mainly used in network installations (as opposed to a personal computer firewall), since most of its strength lies in its ability to work with "zones", such as the DMZ or a 'net' zone. Each zone would then have different rules, making it easy to have for example relaxed rules on the company intranet, yet clamp down on traffic coming in from the Internet.
The plain-text configuration files are usually well-commented and easy to use, though Shorewall may be more difficult for new users to handle than other firewall systems with graphical front-ends.
The most recent stable version is 5.2.3. On 18 February 2019, primary developer Tom Eastep announced that he is retiring from the project, and 5.2.3 would be his final release. Starting with version 4, Shorewall began using a Perl-based compiler frontend; previously it used a shell-based compiler frontend. Support for IPv6 firewalling is included since version 4.2.4.
- "Shoreline Firewall (Shorewall)". Shorewall.net. Retrieved 18 February 2019.
- "SHOREWALL 5.2.3" (TXT). Shorewall.net. Retrieved 18 February 2019.
- "Shorewall Notices". Shorewall.net. Retrieved 22 November 2014.
- "Shoreline Firewall (Shorewall) / [Shorewall-users] The end of the road..." sourceforge.net. Retrieved 18 February 2019.
- "R E L E A S E 4 . 4 H I G H L I G H T S" (TXT). Shorewall.net. Retrieved 22 November 2014.
- "Shorewall IPv6 Support". shorewall.org. Retrieved 18 February 2019.