#!/sbin/runscript # Copyright 1999-2012 Gentoo Foundation # Distributed under the terms of the GNU General Public License v2 # $Header: /var/cvsroot/gentoo-x86/net-firewall/shorewall6-lite/files/shorewall6-lite.initd,v 1.2 2012/02/24 18:54:19 constanze Exp $ extra_commands="check clear" extra_started_commands="refresh reset" depend() { need net provide firewall after ulogd } start() { ebegin "Starting firewall" /sbin/shorewall6-lite -f start 1>/dev/null eend $? } stop() { ebegin "Stopping firewall" /sbin/shorewall6-lite stop 1>/dev/null eend $? } restart() { # shorewall comes with its own control script that includes a # restart function, so refrain from calling svc_stop/svc_start # here. Note that this comment is required to fix bug 55576; # runscript.sh greps this script... (09 Jul 2004 agriffis) ebegin "Restarting firewall" if [ -f /var/lib/shorewall6-lite/restore ] ; then /sbin/shorewall6-lite restore else /sbin/shorewall6-lite restart 1>/dev/null fi eend $? } clear() { # clear will remove all the rules and bring the system to an unfirewalled # state. (21 Nov 2004 eldad) ebegin "Clearing all firewall rules and setting policy to ACCEPT" /sbin/shorewall6-lite clear eend $? } reset() { # reset the packet and byte counters in the firewall ebegin "Resetting the packet and byte counters in the firewall" /sbin/shorewall6-lite reset eend $? } refresh() { # refresh the rules involving the broadcast addresses of firewall # interfaces, the black list, traffic control rules and # ECN control rules ebegin "Refreshing firewall rules" /sbin/shorewall6-lite refresh eend $? }