All of lore.kernel.org
 help / color / mirror / Atom feed
* what filtering to do on the OUTPUT chain?
@ 2002-10-22 18:57 Robert P. J. Day
  2002-10-22 20:03 ` Antony Stone
  2002-10-22 20:09 ` Cedric Blancher
  0 siblings, 2 replies; 12+ messages in thread
From: Robert P. J. Day @ 2002-10-22 18:57 UTC (permalink / raw)
  To: netfilter mailing list


  i've had a number of people tell me that, while they put a
good deal of thought into their INPUT filtering, they simply
ACCEPT all outgoing traffic since, if their input filtering
is working properly, there's no reason to stop outgoing
packets.

  comments?  is there a FAQ that deals with what one should
filter on its way out?  i'm restricting this to the simple case
of firewalling a single host -- no routers, NAT, etc.

rday



^ permalink raw reply	[flat|nested] 12+ messages in thread

end of thread, other threads:[~2002-10-24 23:06 UTC | newest]

Thread overview: 12+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2002-10-22 18:57 what filtering to do on the OUTPUT chain? Robert P. J. Day
2002-10-22 20:03 ` Antony Stone
2002-10-22 23:26   ` Nick Drage
2002-10-22 20:09 ` Cedric Blancher
2002-10-22 20:10   ` Robert P. J. Day
2002-10-22 23:21     ` Cedric Blancher
2002-10-23  9:43       ` Antony Stone
2002-10-23 10:24         ` Cedric Blancher
2002-10-24 21:31         ` Nick Drage
2002-10-24 23:06           ` Antony Stone
2002-10-22 23:31     ` Nick Drage
2002-10-23  6:51       ` Cedric Blancher

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.