# Add hosts here which you want gShield to allow
# COMPLETE access TO but should NOT TRUST to
# connect to the firewall itself.  In essence
# this means DMZ hosts are NOT protected by
# the firewall.

# gShield will happily forward traffic to the DMZ machine
# and drop all traffic coming from that machine to the 
# segment it "protects"

# I personally -do not- recommend using private
# subnets as a DMZ, though many folks seem to think
# this is fine. gShield is currently -not- setup
# to deal with private addresses as a DMZ

#182.12.12.12
