User defined chaines in OUTPUT chain

Tino Keitel <[email protected]>
Newsgroups gmane.linux.network.bridge.ebtables.devel
Organization Innominate Security Technologies AG
Message-ID <[email protected]>
Hi,

1. If I use a user defined chain as the target in a rule in the
filter/OUTPUT chain, all local generated packets will be dropped, even
if the user defined chain contains only an "-j ACCEPT" rule.

The log rules I used indicated that the packets never return from the
user defined chain if the user defined chain contains no rules at all
and default policy is set to RETURN.

If I move the rules that I want to use in the user defined chain into
the OUTPUT chain, everything will work fine.

2. I have noticed that the default policy "RETURN" for user defined
chaines is not mentioned in the manual.

Kernel: 2.4.20-rc1
ebtables: ebtables-v2.0.002_vs_2.4.20-pre7.diff, ebtables-tools 2.0.1

Regards,
Tino

-- 
[email protected]
dipl.-inf.                        Innominate Security Technologies AG
software engineer                                   networking people
tel: +49.30.6392-3308                      http://www.innominate.com/


-------------------------------------------------------
This sf.net email is sponsored by: To learn the basics of securing 
your web site with SSL, click here to get a FREE TRIAL of a Thawte 
Server Certificate: http://www.gothawte.com/rd524.html
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.