Luis Miguel wrote:
> Yes, i have the same opinion. I think it´s very important to
> improve a secure firewall on e-smith, i think that if they
> want to enter at my system, my local network, they will
> do,...i don´t know when, why or who but. i hope that
> e-smith developers make a firewall manager like the
> rest of the distribution

I don't believe that there needs to be a seperate manager for
the firewall - and I think it would be a mistake to provide one.
The template configuration systems allows e-smith to provide
a packet filter firewall which exactly matches the services which are configured to run on the server. We don't have that
packet filter running yet, but it could be a transparent upgrade.
I think it would be desirable to have more configurable control over what services are provided by the server (for instance restricting or eliminating IP masquerade), but I then want
an automatically generated firewall specification, not a seperate control interface.