On Wed, May 02, 2007 at 08:04:53AM -0700, Octavio Alvarez wrote: > You might as well put some iptables-restore at the endo of the "up" > of each interface in /etc/network/interfaces. This lets you control > your firewall per interface and have only the needed rules alive. Wouldn't you be better putting the iptables-restore stuff in the pre-up line? That way the firewall rules are in place before the interface is live. Cheers, Tom -- poisoned coffee, n.: Grounds for divorce.
Attachment:
signature.asc
Description: Digital signature