My advice is that iptables is much simpler than ipchains+ipmasqadm
2.4 will also be more stable than 2.2.
On Tue, Aug 14, 2001 at 04:31:02PM -0700, Rob Hudson wrote:
> > On 20010814.1625, Cory Petkovsek said ...
> >
> > Rob, remember those firewall scripts I gave you to put up on the
> > euglug site, use one of them, they are simple, stateful and easy to
> > implement.
>
> I've been looking at some resources. I think I may go with
> debian/potato and use 2.2.x and ipchains. This box is for a friend so
> I won't be around to babysit it. They need stability more than
> anything. Also, it will act more as a gateway than a firewall -- the
> firewall rules will be pretty open, so that part will be simple.
> Looks like I'm heading towards an ipmasquerade kernel compile. Any
> tips or advice on it? Anyone want to send me scripts and/or .config
> kernel files? :)
>
> Otherwise I have the IP Masquerading HOWTO, which looks pretty good.
>
> Thanks,
> Rob
>