[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: full control of connections



On Sun, May 04, 2008 at 09:28:03AM +0200, NN_il_Confusionario wrote:
> >     * From: frits <frits7@vulkor.net>
> >allowed to include the applications in the firewall rules.
> 
> man iptables in etch still shows
> 
>    owner
>        This  module attempts to match various characteristics of the packet creator, for locally-
>        generated packets. 

On the same page:
 NOTE: pid, sid and command matching are broken on SMP

Most modern processors are SMP, and it really appears broken.

The idea of different users is not really usable. I use my systems to
work.

Any idea when  --cmd-owner gets fixed?


Reply to: