Linux Netfilter discussions
 help / color / mirror / Atom feed
* REJECT as a default policy
@ 2010-01-11 12:02 Lars Nooden
  2010-01-11 20:12 ` Gary Smith
  2010-01-12  7:53 ` Mart Frauenlob
  0 siblings, 2 replies; 8+ messages in thread
From: Lars Nooden @ 2010-01-11 12:02 UTC (permalink / raw)
  To: netfilter

I'd like to add the ability to use the REJECT target as a default policy
to the netfilter / iptables wishlist.

Using REJECT as a default is currently possible as a kludge a few steps
would be saved by allowing it as a default policy.  Perhaps that might
even speed up some filtering in some cases.

A good (IMHO) discussion of DROP vs REJECT has been written by Peter Benie :
	http://www.chiark.greenend.org.uk/~peterb/network/drop-vs-reject


Regards,
/Lars

^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2010-01-12 14:54 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-01-11 12:02 REJECT as a default policy Lars Nooden
2010-01-11 20:12 ` Gary Smith
2010-01-11 22:08   ` Richard Horton
2010-01-11 22:12     ` Gary Smith
2010-01-12 11:21     ` Lars Nooden
     [not found]       ` <4B4C7242.9070403@freemail.hu>
2010-01-12 13:31         ` Lars Nooden
2010-01-12 14:54           ` Mart Frauenlob
2010-01-12  7:53 ` Mart Frauenlob

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox