[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Sheflug] Re: Linux 2.4.8



All

> Last time I looked at 2.4 was about 2.4.2, and I wasn't overly happy with
> the iptables state-tracking, as I was getting incoming data from
> connections that had been closed, and they were being rejected as not being
> part of a valid connection ... as if iptables said "right that's it -
> connection's closed" and didn't wait for ACK's or whatever from the remote
> end to confirm closure. This however is a non-issue for me today as I've an
> OpenBSD box acting as a dedicated firewall now.

Yes, I've seen some weird things going on with iptables.   It was for that 
reason that I was thinking about going over to Open BSD later this year for 
my domestic firewall box.

Paul Branston said he might help me with it but he's a busy chap and I don't 
know if I can even ask him.

Thanks

Richard
---------------------------------------------------------------------
Sheffield Linux User's Group - http://www.sheflug.co.uk
To unsubscribe from this list send mail to
- <sheflug-request [at] vuw.ac.nz> - with the word 
 "unsubscribe" in the body of the message. 

  GNU the choice of a complete generation.