Am 01.10.2011 21:13, schrieb Jan Engelhardt: > On Saturday 2011-10-01 17:19, Richard Weinberger wrote: > >> This patch set adds a switch to iptables-save to select >> a specific chain to be saved. >> >> Sometimes it's useful to save only one chain. >> E.g. When some rules are added dynamically by daemons like >> OpenVPN or strongSwan and the base rule set is generated by >> a bash script. >> >> iptables-save -t filter -C DYN_OVPN > /tmp/dyn-rules > > iptables -S can already select chains and even single rules. We are > getting to the point where things are implemented redundantly.. hm. Hmm, good point. Maybe it's time to drop iptables-save... Thanks, //richard
Attachment:
signature.asc
Description: OpenPGP digital signature