Bug 123659

Summary: RFE: firewall option to trust specific IPs
Product: [Fedora] Fedora Reporter: Jack Neely <jjneely>
Component: system-config-firewallAssignee: Thomas Woerner <twoerner>
Status: CLOSED WONTFIX QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: medium Docs Contact:
Priority: medium    
Version: rawhideCC: dlr
Target Milestone: ---Keywords: FutureFeature
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-11-06 19:37:27 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 177950    

Description Jack Neely 2004-05-19 21:12:37 UTC
Description of problem:
The firewall command in the kickstart config should have an option
that trusts specific IPs or hosts.  Possibly the --trust option can be
made to tell the difference between interfaces and IPs.

Think zephyr servers.

Comment 1 Jeremy Katz 2004-05-20 02:42:50 UTC
anaconda's interface for this stuff is going to be getting simpler,
not more complicated.  Having lokkit expose something like this that
could be used in a scripted fashion wouldn't be terrible, though (and
at that point, I might consider passing arbitrary options to the
firewall command on to lokkit)

Comment 2 Daniel L. Rall 2004-11-04 21:48:44 UTC
Indeed!  Along the lines of bug 128046, this option should also be
available in the GUI.

Comment 3 Chris Lumens 2006-03-10 16:30:22 UTC
Moving to Fedora since we're not going to be able to get a change like this into
RHEL3.

Comment 4 Thomas Woerner 2007-07-23 09:14:01 UTC
There will be a new firewall config tool for fedora soon. But the first version
will not have this feature, but it is on the todo list.

Comment 5 Thomas Woerner 2007-11-06 13:21:36 UTC
Assigning to system-config-firewall.

Comment 6 Thomas Woerner 2013-11-06 19:37:27 UTC
Closing because there will not be big changes to system-config-firewall anymore.