[Dshield] IP Chains.

Quibell, Marc Marc.Quibell at icn.state.ia.us
Wed Oct 17 19:12:52 GMT 2001


I believe it's called SPF, Stateful Packet Filtering. Though I don't know if
this will help: ftp://ftp.interlinx.bc.ca/pub/spf/



-----Original Message-----
From: Donnie C. Moss [mailto:dcm at ugnet.org]
Sent: Wednesday, October 17, 2001 10:10 AM
To: dshield at dshield.org
Subject: [Dshield] IP Chains.


All,

Does any one know how to setup an ipchains rule that will allow only
established connections through?  My goal is to close all ports not used
(even those greater than 1024) but still allow traffic through them as a
responce to a legimitate request.

Donnie


/------------------------\
| Donnie Moss, CCNA, MCP |
| Network Administrator  |
| dcm at ugnet.org          |
| http://www.ugnet.org   |
\------------------------/




_______________________________________________
Dshield mailing list
Dshield at dshield.org
To change your subscription options (or unsubscribe), see:
http://www1.dshield.org/mailman/listinfo/dshield




More information about the list mailing list