[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: iptables

>>>>> "Wichert" == Wichert Akkerman <wichert@wiggy.net> writes:

    Wichert> Previously Brian May wrote:
    >> On my computer, I have iptables configured in
    >> /etc/network/interfaces using the "up" and "down" scripts.

    Wichert> Different remark: you should configure your firewall
    Wichert> before you bring the interface online, otherwise there
    Wichert> will be a window during which you are completely open. So
    Wichert> either use pre-up, or even before the networking script
    Wichert> is run.

Thanks for the suggestion. I have changed the scripts to use "pre-up"
and "post-down".

I also have the scripts log the tables before and after it is executed
each time, hopefully next time my computer boots I may find out what
is going on...
Brian May <bam@debian.org>

Reply to: