[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: User-defined chains



On Sun, 13 Feb 2005 10:58:01 +0100, Jimmy B wrote
> Hey list!
> I'm just starting to learn about iptables and wonder about user-
> defined chains. I've read some HOW-TO's and many seem to use them 
> quite alot. But it seems to me it would be easier not to, what is 
> the advantage with user-dined chains? It seems to me that the 
> default ones would be enough. Any hints? Or directions to good 
> resources on the subject?

I would image that having userdefined chains allows
for better ogranization of your rules. Escpecially if
you have a compicated ruleset. (multiple subnets and DMZ etc. etc.)

I don't use any custom chains as my ruleset is pretty simple.
The LOG chain is a good idea and makes it easy to edit if you want
to change anything. 
I would suggest that you run your ruleset the way that works best for you.

Cheers,



Reply to: