From mboxrd@z Thu Jan 1 00:00:00 1970 From: "David C. Hart" Subject: Re: IP Spoofing Date: Fri, 07 Nov 2003 09:04:08 -0500 Sender: netfilter-admin@lists.netfilter.org Message-ID: <1068213847.1445.10.camel@main.tqmcube.com> References: <60197.200.180.160.84.1068060676.squirrel@www.alcidesmaya.com.br> <1068208010.29753.10.camel@tarkus> <1068212092.1438.8.camel@main.tqmcube.com> <200311071356.hA7DuFj14742@agate.rockstone.co.uk> Reply-To: IPTables Mailing List Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="=-bs0/o4IQ0RsjE1rt0Sh6" Return-path: In-Reply-To: <200311071356.hA7DuFj14742@agate.rockstone.co.uk> Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: To: Antony Stone Cc: Iptables Mailing List --=-bs0/o4IQ0RsjE1rt0Sh6 Content-Type: text/plain Content-Transfer-Encoding: quoted-printable On Fri, 2003-11-07 at 08:56, Antony Stone wrote: > Any packet which arrives at the machine running netfilter (because this r= ule=20 > is in the INPUT chain - if it were in the FORWARD chain then it would app= ly=20 > to any packet being routed through the machine running netfilter) which i= s=20 > part of an ESTABLISHED connection, or which is RELATED to and ESTABLISHED= =20 > connection, is ACCEPTed. >=20 Thanks.=20 --=-bs0/o4IQ0RsjE1rt0Sh6 Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.2 (GNU/Linux) iD8DBQA/q6ZXol4OE0cpGaIRAqe2AJ4lI/0PqEyLnbB6c+7GBPvjicC6pQCgsUP7 G8sVE7NAiopHQPpSwaJwass= =m4Bg -----END PGP SIGNATURE----- --=-bs0/o4IQ0RsjE1rt0Sh6--