26 Sep
2001
26 Sep
'01
21:36
You can't with ipchains, but with iptables (kernel 2.4.x). Use return-rst.
**DANGEROUS**
If you rely on return-rst to "secure" open ports all I do is firewall them or ignore them and I can get access to the port in question. Not such a great idea. I don't understand? Why does is there a (firewalling) difference between return-rst (which makes the port look "closed") and "drop" or "reject" (which makes the port look "filtered")
Or is return-rst something completely different? Markus -- _____________________________ /"\ Markus Gaugusch ICQ 11374583 \ / ASCII Ribbon Campaign markus@gaugusch.dhs.org X Against HTML Mail / \