2009/7/1 Tzury Bar Yochay <tzury.by@xxxxxxxxxxxxxxx>: > hi, > > so far I have seen people using the iptables firewall to protect their > own machine. You haven't looked very far then. :) > that is, protect the machine where the iptables runs. > I wonder if this firewall can be used the same way as firewall > appliance used that is to be placed in between the Internet link and > the LAN switch. Indeed! Make sure to place filtering rules in the FORWARD chain to make them apply for traffic not destined to the firewall itself. /Oskar -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html