Seems as if you are getting upset because a volunteer support mailing list
does not answer your question as you like and on your schedule.
Well, since you appear not to be able to search in Google and type in
iptables, here is your silver platter:
http://www.netfilter.org/documentation/
This contains all the information and links you will ever need to learn
iptables.
As to SuSEFirewall, you appear to be the only person I have seen on this
list who is so disgusted with it. I have been using it for almost 2 years with
no problem. In fact, I have mine configured to do most of what you are
requesting below but just got to reviewing my email today. I learned how to
do it by reading the documentation very thoroughly and a little of additional
research on Google.
As I remember, the general list (suse_e) has discussed most of what you are
asking below several times in the past. Again, Google is a great resource
for searching for this as well. (To help you out there, just go to the
advanced search area and read the contents of the page to learn how to
search that list using google).
One thing I have seen on most mailing lists is that the less attitude you have
and the more you appear to be trying to work and learn, the more likely
someone will help. The more attitude you have which comes across (either
directly or from how the message is written), the more likely people will
ignore you.
It would not surprise me at all if you downloaded SuSE (did not buy it),
expected to obtain support from SuSE without paying for it, and then
approached this mailing list demanding support on your schedule. Just my
impression, but your attitude stinks.
This response appears to be
12/1/2002 3:27:17 PM, Using SuSE
--- Steffen Dettmer
wrote: SuSE-FW-NO_ACCESS_INT->FWEXT entry Sorry, I cannot help you with SuSEFirewall (I do not use it). You should ask on the mailinglist. I did not find any mailing list at SuSE site more closely related to firewall problems than this one. I don't want to cross-post to other, general lists.
it's not more difficult to build own rules :) I probably have to, even if I really did not want it. As I am starting again, installing sofisticated tools on 200MHz and learn about them will cost me some time.
SuSE has *some* great developers. But I never would rely on their buggy scripts. I somehow come to this decision too. I really would like to provide my knowledge foremost about getting third party software to run in SuSE scheme securely, but I'm getting sick of analyzing what's behind, using SDB that is just a lame excuse for its name, incompetent free installation help and commercial support that I don't want to pay for anymore. There will be no sucess of Linux, when commercial distibutors try to steal the market from corporate MS, IBM and Sun, instead of investing the efforts to huge community of active home users, who find out MS XP wants cash everytime they buy new hardware or update buggy system.
is nothing unusual and there must be someone outside there who already went through this crap. never saw a really good firewall script, so I build my own. Which is also not good but works *for me*. My slight hope for getting help here vanishes as the deadline comes near, so I better learn it too. I'm disgusted. Even Java community that is strongly commercialized and complex has far better user support for anybody knowing what to achieve and just looking for quick solutions thousands of others already implemented.
I would not be surprised if you are correct :) Arrgh, I hate it.
Hum, debian costs even much more time to set up I think (IMHO). Yes, but I suspect I would accomplish it in the time I've lost with SuSE...
I think they hack to fast the stuff, no design, no concept, no use - for me :) I just hate scripts that source (!) config files... Not sure about the meaning, you probably talk about quick hacks that may somehow work but don't have long lifecycle. Well, I'm mot against it if it is a good help for common situations without the need for details, but when everybody just wants to sell even basic knowledge like in M$ world, I become irritated.
Is this discussion related to security of SuSE?
Peter.
__________________________________________________ Do you Yahoo!? Yahoo! Mail Plus - Powerful. Affordable. Sign up now. http://mailplus.yahoo.com
-- Check the headers for your unsubscription address For additional commands, e-mail: suse-security-help@suse.com Security-related bug reports go to security@suse.de, not here