All of lore.kernel.org
 help / color / mirror / Atom feed
From: Kang Kai <Kai.Kang@windriver.com>
To: "Burton, Ross" <ross.burton@intel.com>
Cc: OE-core <openembedded-core@lists.openembedded.org>
Subject: Re: [PATCH 3/5] iptables: add default rules
Date: Tue, 24 Jun 2014 09:38:29 +0800	[thread overview]
Message-ID: <53A8D695.8060500@windriver.com> (raw)
In-Reply-To: <CAJTo0Lb-bcLx4T1HHOEzsY3uXmNW8NzdKO9sBQtnottgEfyzXw@mail.gmail.com>

On 2014年06月23日 18:42, Burton, Ross wrote:
> On 23 June 2014 03:32, Kai Kang <kai.kang@windriver.com> wrote:
>> +# Firewall configuration written by system-config-securitylevel
>> +# Manual customization of this file is not recommended.
> That's just going to be confusing to anyone who doesn't know that this
> file was copied directly from RedHat.

OK, I'll remove them.

>
> Also, is it sensible to ship a static firewall configuration?  The one
> thing we're not is one-size-fits-all.

I just want users could start iptables without any professional work. 
And these static firewall rules are common for desktop/server.
Or does the empty rule is better? Anyone who wants to use iptables 
writes his/her own rules. But it is a little difficult for the people 
who not familiar with iptables.

Any suggestion?

Thanks,
Kai

>
> Ross
>
>


-- 
Regards,
Neil | Kai Kang



  reply	other threads:[~2014-06-24  1:38 UTC|newest]

Thread overview: 18+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2014-06-23  2:32 [PATCH 0/5] Update iptables runtime recommends and add default init scripts and configs Kai Kang
2014-06-23  2:32 ` [PATCH 1/5] iptables: update RRECOMMENDS Kai Kang
2014-06-24  6:11   ` Anders Darander
2014-06-25  6:27     ` Kang Kai
2014-06-23  2:32 ` [PATCH 2/5] iptables: add init script and configure file Kai Kang
2014-06-23  2:32 ` [PATCH 3/5] iptables: add default rules Kai Kang
2014-06-23 10:42   ` Burton, Ross
2014-06-24  1:38     ` Kang Kai [this message]
2014-06-24  6:06       ` Anders Darander
2014-06-25  6:43         ` Kang Kai
2014-06-23  2:32 ` [PATCH 4/5] iptables: update rules for ip6tables Kai Kang
2014-06-23  2:32 ` [PATCH 5/5] iptables: update init script and bb file Kai Kang
2014-06-23 11:44   ` Anders Darander
2014-06-24  1:49     ` Kang Kai
2014-06-24  6:01       ` Anders Darander
2014-06-25  6:46         ` Kang Kai
2014-06-23 10:44 ` [PATCH 0/5] Update iptables runtime recommends and add default init scripts and configs Burton, Ross
2014-06-24  1:57   ` Kang Kai

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=53A8D695.8060500@windriver.com \
    --to=kai.kang@windriver.com \
    --cc=openembedded-core@lists.openembedded.org \
    --cc=ross.burton@intel.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.