[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[no subject]



Thanks for answering my question.

On 17 Jan 2004, Doug McNash wrote:

> If you have a rule using connection tracking ($IPTABLES -A allowed -p
> TCP -m state --state ESTABLISHED,RELATED -j ACCEPT) then responses are
> allowed to connection initiated from the inside.

I may add that, though so far I haven't seen any functional failures 
except NTP.
 
> But,alas, udp is connectionless so you need the explicit rule.

I fumbled around a bit before finding out the firewall was my roadblock, 
and I am more comfortable now that I have an explanation.

 - John Mills
   john.m.mills at alum.mit.edu


</pre>
<!--X-Body-of-Message-End-->
<!--X-MsgBody-End-->
<!--X-Follow-Ups-->
<hr>
<!--X-Follow-Ups-End-->
<!--X-References-->
<ul><li><strong>References</strong>:
<ul>
<li><strong><a name="00689" href="msg00689.html">[ale] NTP and 'ipchains'</a></strong>
<ul><li><em>From:</em> dmcnash at charter.net (Doug McNash)</li></ul></li>
</ul></li></ul>
<!--X-References-End-->
<!--X-BotPNI-->
<ul>
<li>Prev by Date:
<strong><a href="msg00691.html">[ale] Open Source Apps [OT]</a></strong>
</li>
<li>Next by Date:
<strong><a href="msg00693.html">[ale] XML Tidying Program</a></strong>
</li>
<li>Previous by thread:
<strong><a href="msg00689.html">[ale] NTP and 'ipchains'</a></strong>
</li>
<li>Next by thread:
<strong><a href="msg00693.html">[ale] XML Tidying Program</a></strong>
</li>
<li>Index(es):
<ul>
<li><a href="maillist.html#00692"><strong>Date</strong></a></li>
<li><a href="threads.html#00692"><strong>Thread</strong></a></li>
</ul>
</li>
</ul>

<!--X-BotPNI-End-->
<!--X-User-Footer-->
<!--X-User-Footer-End-->
</body>
</html>