Secon hello today...


David A. Ranch wrote:
> Check out the
> ruleset in the TrinityOS doc and see if it will do
> what you need:
> 
> http://www.ecst.csuchico.edu/~dranch/LINUX/index-linux.html
I'm working hard on this ruleset.
But I can't understand why we have to enable
all HIGH ports for reply tcp/udp traffic.

Moreover David A. Ranch the autor of the TrinityOS document
(Oh it's you !!!!) tell :
"Rejecting traffic is better than DENYING it since 

        it makes the IPFWADM'ED machine look like its not CAPABLE of 

        doing that particular protocol!"
So why all policies used are DENY ??

Thank you.
Marc Cassuto.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For daily digest info, email [EMAIL PROTECTED]

Reply via email to