don't overlook the orginzational advantages, I was able to take a set of
rules that with a brute-force ipfwadm style apprach generated 1400 lines
and reduce it to 150 lines by reorginizing it and using several additional
chains.

David Lang


 On Fri, 22 Oct 1999, Bennett Samowich wrote:

> Greetings,
> 
> This may be a bit of a newbie question...
> 
> I have begun to experiment with ipchains and understand that one can create 
> a chain for just about anything.  For my first attempt, I have taken my 
> ipfwadm rules and converted them directly to ipchains.
> 
> Question:
> Is there anything "functionally" wrong with putting all the rules in the 
> input, output, and forward chains ala ipfwadm?
> 
> Other than for organizational purposes, what would be the reason to create 
> a new chain?  (see first question)
> 
> Thanks in advance,
> - Bennett
> -
> [To unsubscribe, send mail to [EMAIL PROTECTED] with
> "unsubscribe firewalls" in the body of the message.]
> 

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to