shorewall ESTABLISHED connections
I use ubuntu 8.04 LTS at various sites as the main router/firewall, and it works very well - has done for years, since ubuntu 6.x - I use shorewall/squid/dansguardian.
Sometimes, I need to block unwanted outbound traffic, and so I edit /etc/shorewall/rules - but when reloading shorewall, those new rules only apply to new connections, not established connections.
I've tried putting a DROP line in the ESTABLISHED section, but it fails.
I'm also uncertain whether shorewall does, or indeed can, control established connections directly or not.
Whatever, I need to find a way to either drop all connections on a shorewall reload (a messy way... not my preference) or find out how to apply new rules to established connections.
Right now, I'd have to reboot my ubuntu box to kill all connections; Somewhat of an overkill!!!!
Thanks in advance for any assistance
Ubuntu 9.10 64bit on a Gigabyte GA-965G-DS4 with
E6700 2.66GHz / 1066 MHz / 4MB L2 Cache Intel Core 2 Duo Processor & 8GB ECC Corsair DDR2 800. GeForce 210, 512MB DDR2.