delay after [time patch] rule's expire

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi all!
This is not a technical problem in fact, only my
curiousty. I applied the time patch with patch-o-matic
and test it with a rule like

iptables -A INPUT -p icmp -m time --timestart 14:44
--timestop 14:55 --days Fri -j DROP

When the current time is passing the start time
(packages will be matched and dropped soon) and the
stop time (they'll be free to pass again) there is
about 1 min. delay between these two process. For
example, when it's 14:55, then the icmp packages
shouldn't be matched anymore but they are dropped till
it's about 14:56. Why?

Have a nice day..



=====
M.Barýþ Demiray

DOS: n., A small annoying boot virus that causes random 
spontaneous system crashes, usually just before saving a massive project. Easily cured by UNIX.  See also MS-DOS, IBM-DOS, DR-DOS.


		
__________________________________
Do you Yahoo!?
Yahoo! Mail - Helps protect you from nasty viruses.
http://promotions.yahoo.com/new_mail


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux