From mboxrd@z Thu Jan 1 00:00:00 1970 From: Askar Subject: Re: simple question Date: Wed, 27 Apr 2005 16:58:03 +0600 Message-ID: References: <1403218a05042703502786f182@mail.gmail.com> Reply-To: Askar Mime-Version: 1.0 Content-Transfer-Encoding: quoted-printable Return-path: In-Reply-To: <1403218a05042703502786f182@mail.gmail.com> Content-Disposition: inline List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-bounces@lists.netfilter.org Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: text/plain; charset="us-ascii" To: Mohamed Eldesoky Cc: netfilter you mean if I have rules like iptables -P FORWARD ACCEPT iptables -A FORWARD -p tcp --dport 22 -j ACCEPT=20 Then putting ESTABLISHED,RELATED thing will helps? however why should I put ACCEPT rules in FORWARD when the default policy for it is already to accept everything. thanks and regards Askar On 4/27/05, Mohamed Eldesoky wrote: > Yes or No, depends on your rules !! >=20 > On 4/27/05, Askar wrote: > > hi list > > > > If I put "iptables --policy FORWARD ACCEPT" , still I need a l= ine i-e > > > > iptables -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT > > > > Regards > > > > Askar > > -- > > I love deadlines. I like the whooshing sound they make as they fly by. > > Douglas Adams > > > > >=20 > -- > Mohamed Eldesoky > www.eldesoky.net > RHCE >=20 --=20 I love deadlines. I like the whooshing sound they make as they fly by. Douglas Adams