Re: not sure if 'iptables -Z' needed/useful/superfluous here..

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



El dom, 16 de 01 de 2005 a las 00:32, Jason Opperisano escribiÃ:
> On Fri, 2005-01-14 at 16:38, Jose Maria Lopez wrote:
> > i	El vie, 14 de 01 de 2005 a las 07:03, seberino@xxxxxxxxxxxxxxx
> > escribiÃ:
> > 
> > > I read man page on iptables but it still was not clear if I need
> > > -Z to 'reset the byte count' and other stuff like it says it will do.
> > 
> > If you delete your rules there are no counters, so you don't need
> > to reset them.
> 
> it will still reset the built-in chain counters.
> 
> -j

You are right. I didn't have in mind that. I will change it in
our bastion-firewall GPL software, because it uses the counters
to get statisticals.

Thanks for the information and regards.

-- 
Jose Maria Lopez Hernandez
Director Tecnico de bgSEC
jkerouac@xxxxxxxxx
bgSEC Seguridad y Consultoria de Sistemas Informaticos
http://www.bgsec.com
ESPAÃA

The only people for me are the mad ones -- the ones who are mad to live,
mad to talk, mad to be saved, desirous of everything at the same time,
the ones who never yawn or say a commonplace thing, but burn, burn, burn
like fabulous yellow Roman candles.
                -- Jack Kerouac, "On the Road"




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux