Re: IPtables

From: Babas666 (babas666@metacrawler(dot)com)
Date: 03/22/02


From: "Babas666" <babas666@metacrawler(dot)com>
Date: Fri, 22 Mar 2002 00:52:20 +0100


"Wolfgang Kueter" <wolfgang@shconnect.de> a écrit dans le message news:
a7dhob$uhe$1@news.shlink.de...
> Babas666 wrote:
>
>
> > I just want to know if I haven't forgotten common rules or if you have
> > some rules to stop malformed packets.
>
> I'd recommend defining a chain blocklog, that logs and rejects all
> traffic that is not allowed and use that as the last rule in each
> chain. With that rule you can look at the logfile and have complete
> control what your packet filter is doing.
>

Ok and what about malformed packets?

> Wolfgang
> --
> A foreign body and a foreign mind,
> never welcome in the land of the blind.
> Peter Gabriel, Not one of us, 1980