Re: NTP

From: Sven Esbjerg (none@esbjerg--ehp.dk.lh.bsd-dk.dk)
Date: Fri 24 Aug 2001 - 13:10:55 CEST


Date: Fri, 24 Aug 2001 13:10:55 +0200
From: Sven Esbjerg <none@esbjerg--ehp.dk.lh.bsd-dk.dk>
To: bsd-dk@bsd-dk.dk
Subject: Re: NTP

On Fri, Aug 24, 2001 at 12:50:42PM +0200, Kristian Vilmann wrote:
> IP-filter har en keep state option. Også til UDP.
> Fra http://www.obfuscation.org/ipf/ipf-howto.html#TOC_21:
> When machine A sends a UDP packet to machine B with source port X and
> destination port Y, ipf will allow a reply from machine B to machine A
> with source port Y and destination port X. This is a short term state
> entry, a mere 60 seconds.
>
> Den kan vist det du beder om.

Ja det virker fint med IP-Filter. Jeg bruger det selv meget på mine
firewalls.

-- 
Sven



This archive was generated by hypermail 2b30 : Wed 15 Nov 2006 - 18:24:13 CET