Date: Fri, 24 Aug 2001 13:10:55 +0200 From: Sven Esbjerg <none@esbjerg--ehp.dk.lh.bsd-dk.dk> To: bsd-dk@bsd-dk.dk Subject: Re: NTP
On Fri, Aug 24, 2001 at 12:50:42PM +0200, Kristian Vilmann wrote:
> IP-filter har en keep state option. Også til UDP.
> Fra http://www.obfuscation.org/ipf/ipf-howto.html#TOC_21:
> When machine A sends a UDP packet to machine B with source port X and
> destination port Y, ipf will allow a reply from machine B to machine A
> with source port Y and destination port X. This is a short term state
> entry, a mere 60 seconds.
>
> Den kan vist det du beder om.
Ja det virker fint med IP-Filter. Jeg bruger det selv meget på mine
firewalls.
-- Sven
This archive was generated by hypermail 2b30 : Wed 15 Nov 2006 - 18:24:13 CET