Re: state matching vrs prerouting.... ???

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Le ven 21/03/2003 à 21:37, SBlaze a écrit :
>  That is somewhat correct. What I read in Oskar's tutorial led me to believe
> that i could preroute the CS requests so that they would in a sence bypass or
> not pass through the UDP input filters. I am somewhat confused as to why they
> do?

Every packets passes through filter table. It's up to you to configure
your filtering ruleset in order to let the appropriate packets pass.

Handling packets in nat table _does not_ mean they've been accepted once
for all.

-- 
Cédric Blancher  <blancher@xxxxxxxxxxxxxxxxxx>
IT systems and networks security expert  - Cartel Sécurité
Phone : +33 (0)1 44 06 97 87 - Fax: +33 (0)1 44 06 97 99
PGP KeyID:157E98EE  FingerPrint:FA62226DA9E72FA8AECAA240008B480E157E98EE




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux