From mboxrd@z Thu Jan 1 00:00:00 1970 From: Mart Frauenlob Subject: Re: iptables NEW or SYN Date: Fri, 14 May 2010 07:08:19 +0200 Message-ID: <4BECDAC3.4050001@chello.at> References: Reply-To: netfilter@vger.kernel.org Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: Sender: netfilter-owner@vger.kernel.org List-ID: Content-Type: text/plain; charset="us-ascii" To: netfilter@vger.kernel.org On 13.05.2010 20:45, Markus Feldmann wrote: > I try an example and you say whether i am right. > > If i meet a girl, which i doesnt meet before, than she is NEW. > When i meet a girl every day which, than she is only new at the first > meet but the meeting is every day a new experience (syn). > > Is that correct? > > So the state NEW is the sight view of my computer and the syn only > means, there is a foreign computer which wants to establish a new > connection. > > Ist that right? > > If that is right than i need the --syn argument not the state NEW for my > apache-server. > http://www.frozentux.net/iptables-tutorial/iptables-tutorial.html#STATEMACHINE