Daniel Franke writes: >> Are there other good ACL languages that we can steal the spec or >> implementation from > > Most of the features we want to match on (basically everything except > IP/port) are NTP-specific, so not directly. But a lot of my design was > inspired by iptables.
Sorry for the sidetracking, but while you mention iptables: if we can presume the existence of a packet filter in the OS, would it perhaps make sense to not implement that part of the filtering in ntpd and leave it to that filter? Regards, Achim. -- +<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+ SD adaptation for Waldorf rackAttack V1.04R1: http://Synth.Stromeko.net/Downloads.html#WaldorfSDada _______________________________________________ devel mailing list [email protected] http://lists.ntpsec.org/mailman/listinfo/devel
