site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Posting?
Post a:
Post a:
Links: ·Forum FAQ ·Attitude Adjustment ·Linux docs ·DistroWatch ·OPLM ·FreeBSD Handbook
AuthorAll Replies

Nick8
Premium
join:2001-03-17
UK

reply to paul1238

Re: Free IPTABLES SCRIPT! Get it here now!!!

I don't think you can set a policy of reject.. The reject target is an optional module.

Even if you could, I dislike the way in which a plain reject rule (no --reject-with) sends back an dest. unreachable regardless of what it is rejecting.. I prefer to have it send RST ACKs / ICMP 3,3s when dropping TCP / UDP..

Since reject has to be a rule, I thought it would aid clarity to ignore policies altogether..

Thanks for the comments.

Monday, 04-Jun 03:11:37 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics