User defined chaines in OUTPUT chain
Tino Keitel <[email protected]>
| Newsgroups | gmane.linux.network.bridge.ebtables.devel |
|---|---|
| Organization | Innominate Security Technologies AG |
| Message-ID | <[email protected]> |
Hi, 1. If I use a user defined chain as the target in a rule in the filter/OUTPUT chain, all local generated packets will be dropped, even if the user defined chain contains only an "-j ACCEPT" rule. The log rules I used indicated that the packets never return from the user defined chain if the user defined chain contains no rules at all and default policy is set to RETURN. If I move the rules that I want to use in the user defined chain into the OUTPUT chain, everything will work fine. 2. I have noticed that the default policy "RETURN" for user defined chaines is not mentioned in the manual. Kernel: 2.4.20-rc1 ebtables: ebtables-v2.0.002_vs_2.4.20-pre7.diff, ebtables-tools 2.0.1 Regards, Tino -- [email protected] dipl.-inf. Innominate Security Technologies AG software engineer networking people tel: +49.30.6392-3308 http://www.innominate.com/ ------------------------------------------------------- This sf.net email is sponsored by: To learn the basics of securing your web site with SSL, click here to get a FREE TRIAL of a Thawte Server Certificate: http://www.gothawte.com/rd524.html