[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Sheflug] Re: Linux 2.4.8
All
> Last time I looked at 2.4 was about 2.4.2, and I wasn't overly happy with
> the iptables state-tracking, as I was getting incoming data from
> connections that had been closed, and they were being rejected as not being
> part of a valid connection ... as if iptables said "right that's it -
> connection's closed" and didn't wait for ACK's or whatever from the remote
> end to confirm closure. This however is a non-issue for me today as I've an
> OpenBSD box acting as a dedicated firewall now.
Yes, I've seen some weird things going on with iptables. It was for that
reason that I was thinking about going over to Open BSD later this year for
my domestic firewall box.
Paul Branston said he might help me with it but he's a busy chap and I don't
know if I can even ask him.
Thanks
Richard
---------------------------------------------------------------------
Sheffield Linux User's Group - http://www.sheflug.co.uk
To unsubscribe from this list send mail to
- <sheflug-request [at] vuw.ac.nz> - with the word
"unsubscribe" in the body of the message.
GNU the choice of a complete generation.