On Sun, Mar 25, 2012 at 10:03:28 +0200,
  Frantisek Hanzlik <fra...@hanzlici.cz> wrote:

and - UDP is stateless, thus no "-m state --state NEW".

While the UDP protocol is stateless, for iptables UDP isn't when matching
on state. A flow is tracked so that inbound UDP packets are associated with
recently sent outgoing UDP packets.
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org

Reply via email to