[Dshield] IP Chains.

Will Boege will_boege at i-tech.com
Wed Oct 17 19:42:12 GMT 2001

I was under the impression that you couldn't do this with IPCHAINS.  I
know you can do it easily with IPTABLES with the line:

iptables -A INPUT -i eth0 -p tcp --syn -j DROP

Somebody jump in if I'm wrong.

Does any one know how to setup an ipchains rule that will allow only
established connections through?  My goal is to close all ports not used
(even those greater than 1024) but still allow traffic through them as a
responce to a legimitate request.


| Donnie Moss, CCNA, MCP |
| Network Administrator  |
| dcm at ugnet.org          |
| http://www.ugnet.org   |

