Previously Bernd Eckenfels wrote:
> Perhaps it would be the best to switch the ipchains to policy "default deny"
> at the start of networking and then set up the rules afterwards in your own
> script. fwctl is one of those options for setting up the rules.

You can setup all the rules before bringing the network online, I do
that on all my machines.


