Re: [rock-user] Firewall Rules and System Startup

Benjamin Schieder <blindcoder-1k+CIuW/[email protected]> Sun, 06 Nov 2005 19:43:26 +0100
Newsgroups gmane.linux.distributions.rock.user
Message-ID <[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Bernd Petrovitsch wrote:
> How and where is one supposed to put the firewall rules into?
> 
> In theory I want:
> 1) configure interfaces, but do not `ip set link eth<x> up` them.
> 2) possibly add and/or delete routes
> 3) add firewall rules
> 4) ip set link eth<x> up
> 
> 1) is configured with stone and started somewhere and somehow.
> And 2)-4)?

Theres rudimentary support for 3) in /etc/network/modules/iptables.sh
For 2) there's only a 'default route' possibility in yet.
4) is done automatically when adding the interface.

Greetings,
	Benjamin
- --
< blindcoder> I still say Violist didn't get it :P
< billnye> I say we have no evidence of it
< blindcoder> evidence is irrelevant
< blindcoder> it's rumors and believing that make truth
< blindcoder> -- me, now.
< billnye> objective reality, schmobjective reality -- me, paraphrasing, now.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)

iD8DBQFDbk7Nr0OTeImXvg8RAhSVAKCsruWUofYr1SGU6GL/FyCC9e7GQgCfV5XH
Zbm8+uXvhVrzWfXqGCCOq24=
=Cgsi
-----END PGP SIGNATURE-----