From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Clay Amerault" Subject: Is there a firewall that reads rules directly using iptables? Date: Sat, 25 Oct 2003 19:21:28 -0400 Sender: netfilter-admin@lists.netfilter.org Message-ID: <000001c39b4e$bbddb750$6601a8c0@bluedevil1> Mime-Version: 1.0 Content-Type: multipart/alternative; boundary="----=_NextPart_000_0001_01C39B2D.34CC1750" Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: To: netfilter@lists.netfilter.org This is a multi-part message in MIME format. ------=_NextPart_000_0001_01C39B2D.34CC1750 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Hello. I've downloaded and played with a few firewalls like fwbuilder and firestarter. It seems like these firewalls and all the others I've found keep their own ruleset in a data store and then use that ruleset to create iptables commands, and then blow away whatever rules are in netfilter already and load the ruleset they create. Are there any firewalls that read the netfilter rules using iptables and don't have any intermediate storage of their own rules. I'd like a firewall that was aware of any changes made to netfilter rules if a program external to it issued an iptables command to change the rules, and then allowed you to manage that. Thanks for your help. ------=_NextPart_000_0001_01C39B2D.34CC1750 Content-Type: text/html; charset="us-ascii" Content-Transfer-Encoding: quoted-printable

Hello.

 

I’ve downloaded and played with a few firewalls = like fwbuilder and firestarter.  It seems like these firewalls and all the others I’ve found keep their own = ruleset in a data store and then use that ruleset to create iptables commands, = and then blow away whatever rules are in netfilter already and load the ruleset = they create.

 

Are there any firewalls that read the netfilter rules = using iptables and don’t have any intermediate storage of their own = rules.  I’d like a firewall that = was aware of any changes made to netfilter rules if a program external to it = issued an iptables command to change the rules, and then allowed you to manage = that.

 

Thanks for your help.

------=_NextPart_000_0001_01C39B2D.34CC1750--