strange MS visits

Henry Spencer henry-lqW1N6Cllo0sV2N9l4h3zg at public.gmane.org
Sat Dec 4 06:16:52 UTC 2004


On Thu, 2 Dec 2004, William Park wrote:
> > > pass *only* packets that have the SYN bit set...
> 
> Once I accept the packet with SYN bit set, doesn't IPTable consider any
> subsequent packets ESTABLISHED or RELATED (otherwise, previously
> "seen")?  Or, is IPTable smart enough to know that remote is requesting
> TCP connection which is in the middle of being established?

It's been a long time since I looked at setting this up with iptables...
don't know the answer to that one offhand.  I'm sure there's a way to
tell it not to get clever -- to give you filtering of each and every
packet -- but I don't remember how.

                                                          Henry Spencer
                                                       henry-lqW1N6Cllo0sV2N9l4h3zg at public.gmane.org

--
The Toronto Linux Users Group.      Meetings: http://tlug.ss.org
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://tlug.ss.org/subscribe.shtml





More information about the Legacy mailing list