Re: Iptables Question

From: /dev/rob0 (rob0_at_gmx.co.uk)
Date: 03/19/04


Date: Thu, 18 Mar 2004 23:36:18 -0600

On Thu, 18 Mar 2004 22:27:44 -0500, Chris McHugh wrote:
> iptables -L shows a lot of Accept and Drops under Chain INPUT (policy

iptables -L is useless. With -v it's a bit better, but only
iptables-save shows you your exact rules.

> Does this invalidate all the other settings and do what it looks like it
> does? I did not put it there.

Any rules processed before this mystery rule are not affected. No, most
likely it does not do what it looks like. There's probably some kind of
condition, like a protocol.

Finally, yes, you probably DID put it there. :)

-- 
  /dev/rob0 - preferred_email=i$((28*28+28))@softhome.net
  or put "not-spam" or "/dev/rob0" in Subject header to reply


Relevant Pages

  • Re: forwarding or masquerading?
    ... > generates another so tcpdump is quite useless unless i can figure out how to ... Just to have cleaner output I would flush the nat tables as well from ... instead of accept in script for instance ... iptables -P INPUT DROP ...
    (comp.security.firewalls)
  • Re: vpn pass through
    ... supports iptables, where I couldn't find any examples. ... connection, can you show me any examples to do iptables? ... > No i mean you need to forward IP protocol GRE. ...
    (linux.redhat)
  • Re: vpn pass through
    ... supports iptables, where I couldn't find any examples. ... connection, can you show me any examples to do iptables? ... > No i mean you need to forward IP protocol GRE. ...
    (linux.redhat)
  • Re: newb: netfilter/iptables ?? extension?
    ... >> pointless except in the easiest cases. ... What make you think you can write code that's more effiecent than IPTABLES? ... > Should have mentioned in the first post that I'm looking for developer ...
    (comp.os.linux.networking)
  • Re: Internet Activity Monitor for Linux?
    ... I would like to have an Internet Activity ... iptables -P OUTPUT DROP ... iptables -A protocol -j ACCEPT ... A foreign body and a foreign mind, ...
    (comp.security.firewalls)

Quantcast