Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Grant Taylor <gtaylor@riverviewtech.net>
To: Mail List - Netfilter <netfilter@vger.kernel.org>
Subject: Re: iptables rules for cups printer discovery
Date: Thu, 14 Aug 2008 21:00:32 -0500	[thread overview]
Message-ID: <48A4E340.1090305@riverviewtech.net> (raw)
In-Reply-To: <alpine.LNX.1.10.0808142150080.25617@fbirervta.pbzchgretzou.qr>

On 8/14/2008 8:53 PM, Jan Engelhardt wrote:
> Nope that would not work because the source and destination addresses 
> are flipped on return packets, and then you even have the .255 thing.

Ah.  I forgot about the fact that recent only dealt with the source IP 
and that you could not specify source or dest in the set / update / 
check parameters to recent.  :(

> That smells like a feature request - me to the rescue! (I think that 
> would be much preferable over having a ton of connection helpers)

*nod*  It would be very nice to be able to specify whether or not the 
given recent list is suppose to use the source or dest IP.  I wonder if 
it would be possible to add a new flag that indicates act on the 
destination IP.  That way it would be possible to default to just source 
like it currently is but still be able to specify dest when desired.  I 
suppose to make things clean it would be better to add a flag to 
indicate source and use that flag as the default when no flag is specified.



Grant. . . .

  reply	other threads:[~2008-08-15  2:00 UTC|newest]

Thread overview: 20+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-08-14 18:51 iptables rules for cups printer discovery Stephen Isard
2008-08-14 20:00 ` Jan Engelhardt
2008-08-14 20:23   ` Stephen Isard
2008-08-14 20:37     ` Jan Engelhardt
     [not found]       ` <11653-43715@sneakemail.com>
     [not found]         ` <alpine.LNX.1.10.0808141744490.18538@fbirervta.pbzchgretzou.qr>
2008-08-14 23:01           ` Stephen Isard
2008-08-15  1:35 ` Grant Taylor
2008-08-15  1:53   ` Jan Engelhardt
2008-08-15  2:00     ` Grant Taylor [this message]
2008-08-15  2:04       ` Jan Engelhardt
2008-08-15  2:14         ` Grant Taylor
2008-08-15  2:26           ` Jan Engelhardt
2008-08-15 13:10         ` Stephen Isard
2008-08-15 13:23           ` Jan Engelhardt
2008-08-15 14:17             ` Stephen Isard
2008-08-15 15:21               ` Grant Taylor
2008-08-15 15:38                 ` Stephen Isard
2008-08-15 16:16                   ` Grant Taylor
2008-08-15 16:28                     ` Stephen Isard
2008-08-15 18:01                       ` Grant Taylor
2008-08-15 15:16           ` Grant Taylor

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=48A4E340.1090305@riverviewtech.net \
    --to=gtaylor@riverviewtech.net \
    --cc=netfilter@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox