From: Mark Vevers <mark@ifl.net>
To: Nik Trevallyn-Jones <nik@designer.com.au>, netfilter@lists.netfilter.org
Subject: Re: active firewall
Date: Tue, 23 Sep 2003 16:11:17 +0100 [thread overview]
Message-ID: <200309231611.20748.mark@ifl.net> (raw)
In-Reply-To: <03092320103102.01185@slinky.exmosys.com>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
On Tuesday 23 Sep 2003 2:26 pm, Nik Trevallyn-Jones wrote:
> 1 two new targets: ENLIST, DELIST
> These targets effectively cause one or more new rules to be automatically
> added/removed to/from the firewall in response to matching the associated
> rule. This allows the firewall to respond to certain events by
> adding/deleting rules within itself.
You can do most of what you are after with the 'RECENT' match and target ...
I.e. if 'X' seen from 'Y' within n seconds - block Y
You can create some quite interesting rulesets with recent and a few logic
chains .....
Mark
- --
Mark Vevers. mark@ifl.net / mvevers@rm.com
Principal Internet Engineer, Internet for Learning,
Research Machines Plc AS 5503
Tel: +44 1235 854314, Fax: +44 1235 854693
- --
GPG Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xB08F3CA3
Fingerprint: 85BA 30C4 9EC8 1792 4C8C C31E 58B5 3D1C B08F 3CA3
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
iD8DBQE/cGKVWLU9HLCPPKMRAs7pAJ94G/Tra46YJhANHjxcax+xFFeYHACfbpf5
ETRkADtzBYezwEUZq/qNzHg=
=mNJy
-----END PGP SIGNATURE-----
next prev parent reply other threads:[~2003-09-23 15:11 UTC|newest]
Thread overview: 6+ messages / expand[flat|nested] mbox.gz Atom feed top
2003-09-23 13:26 active firewall Nik Trevallyn-Jones
2003-09-23 13:32 ` Chris Brenton
2003-09-23 14:07 ` Nik Trevallyn-Jones
2003-09-23 15:11 ` Mark Vevers [this message]
2003-09-23 21:19 ` Nik Trevallyn-Jones
2003-09-24 1:18 ` Jim Carter
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=200309231611.20748.mark@ifl.net \
--to=mark@ifl.net \
--cc=netfilter@lists.netfilter.org \
--cc=nik@designer.com.au \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.