[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Why not have firewall rules by default?



On 23/01/08 08:29 -0700, Michael Loftis wrote:

It's better to leave the service disabled, or even better, completely uninstalled from a security standpoint, and from a DoS standpoint as well. The Linux kernel isn't very efficient at processing firewall rules. Newer

I thought it was very efficient in doing so. YMMV.


This much does exist. invoke-rc.d iptables save --- i'm not sure what package the /etc/init.d/iptables script is in, seems to me like it was part of the same package that provided the binaries.

Didn't that get removed?

regards, Rolf
--
... But, conscience asks the question, 'Is it right?' ...


Reply to: