Where to drop packets ...

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Monday 11 November 2002 1:46 pm, Ray Leach wrote:

> Hi
>
> Is it better to drop or reject packets in the mangle-prerouting table or
> in the filter-forward chain?

Filter-forward.

The mangle tables are for mangling packets.

The filter tables are for filtering them.

Drop and reject are filtering actions.

Antony.

-- 

Normal people think "if it ain't broke, don't fix it".
Engineers think "if it ain't broke, it doesn't have enough features yet".



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux