[LUGOS] iptables: kernel 2.6 & IPSec filtering

Jure Koren jure at hehe.si
Mon Oct 22 09:21:18 CEST 2007


On Monday 22 of October 2007 08:38:52 Damir Dezeljin (dev) wrote:
> Z iptables bi rad filtriral promet in sicer tako, da bi vedel kaj
> prihaja preko VPN-ja in kaj iz interneta. Namrec NIMAM moznosti
> nastaviti anti-spoofing rulo. To pomeni, da lahko na zunanjem
> interfaceju (torej od ISP-ja) dobim tudi promet iz 10.0.0.0/16.

man iptables

Išči matching modula "ah" in "esp". Lahko nastaviš celo SPI.

lp,

-- 
Jure Koren, unix developer
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part.
Url : http://liste2.lugos.si/pipermail/lugos-list/attachments/20071022/541ceb13/attachment-0001.pgp 


More information about the lugos-list mailing list