Toon posts:

Ipchains accept, reject, deny

Pagina: 1
Acties:
  • 70 views sinds 30-01-2008

Verwijderd

Topicstarter
Zou iemand in het kort kunnen uitleggen was ACCEPT,REJECT en DENY precies doen ?

  • eek
  • Registratie: Februari 2001
  • Laatst online: 06-04-2020

eek

@MagickNET

rtfm?

Skill is when luck becomes a habit.


  • Mior
  • Registratie: Maart 2000
  • Laatst online: 15-08 00:58
sure.
A firewall rule specifies criteria for a packet, and a target. If the packet does not match, the next rule in the chain is the examined; if it does match, then the next rule is specified by the value of the target, which can be the name of a user-defined chain, or one of the special values ACCEPT, DENY, REJECT, MASQ, REDIRECT, or RETURN. ACCEPT means to let the packet through. DENY means to drop the packet on the floor. REJECT means the same as drop, but is more polite and easier to debug, since an ICMP message is sent back to the sender indicating that the packet was dropped. (Note that DENY and REJECT are the same for ICMP packets). MASQ is only legal for the forward and user defined chains, and can only be used when the kernel is compiled with CONFIG_IP_MASQUERADE defined. With this, packets will be masqueraded as if they originated from the local host. Furthermore, reverse packets will be recognized as such and they will be demasqueraded automatically, bypassing the forwarding chain.
REDIRECT is only legal for the input and user-defined chains and can only be used when the Linux kernel is com-piled with CONFIG_IP_TRANSPARENT_PROXY defined. With this, packets will be redirected to a local socket, even
if they were sent to a remote host. If the specified redirection port is 0, which is the default value, the
destination port of a packet will be used as the redirection port. When this target is used, an optional extra argument (the port number) can be supplied. If the end of a user-defined chain is reached, or a rule with target RETURN is matched, then the next rule in the previous (calling) chain is examined. If the end of a builtin chain is reached, or a rule in a builtin chain with target RETURN is matched, the target specified by the chain policy determines the fate of the packet.
Copy/Paste van 'man ipchains'.

  • Zwelgje
  • Registratie: November 2000
  • Laatst online: 17-08 09:02
da nie echt kort :)

A wise man's life is based around fuck you


  • Mior
  • Registratie: Maart 2000
  • Laatst online: 15-08 00:58
Op dinsdag 27 november 2001 22:09 schreef zwelgje2 het volgende:
da nie echt kort :)
Geloof me, voor unix begrippen is dat kort.

Verwijderd

ACCEPT een package acepteren
REJECT een package negeren
DENY een package weigeren

nou dat was mooilijk zeg.....
misschien moet je de volgende keer mar een howto lezen :)
http://www.linuxdoc.org
EN NIET IN HOOFDLETTERS AUB HET STAAT ZO ASO
HET IS DAN NET OF JE IEDEREEN DE OREN VAN Z'N HOOFD SCHREEUWT

  • Zwelgje
  • Registratie: November 2000
  • Laatst online: 17-08 09:02
Op dinsdag 27 november 2001 22:09 schreef Phantom_ het volgende:

[..]

Geloof me, voor unix begrippen is dat kort.
dat geloof ik graag, ik neem regelmatig een pc mee naar de wc om ze tijdens de behoefte eens lekker door te lezen (ja rare bezigheid..)

A wise man's life is based around fuck you


Verwijderd

Topicstarter
Thnxxxx..........

Verwijderd

Tja dit is typisch iets wat je heel erg makkelijk zelf uit kan zoeken.

Verder hoeft zoals gezegd een topictitel niet in hoofdletters. Komt nogal shreeuwerig over.
Ik heb de topictitel voor je aangepast.

Dit topic gaat op slot om bovengenoemde reden.
Zie ook [topic=319439]
Pagina: 1

Dit topic is gesloten.