"Scott C. Best" wrote: > > Matt: > Sounds good! I haven't checked echoWall on Oxygen yet, > so good going.
Thanks Scott, but they don't make it easy. There's no /etc/version or convenient uname switch so a script can determine what OS it's running on. I think I had to grep /etc/issue and figure that 4.0.* means Dachstein. Other than that, cut works differently and grepping network.conf is a bit different. Even though Dachstein has a more minimal set of busybox commands, I was able to do 99% of what I wanted to. > BTW, please *do* feel free to "plagiarize" from what > I wrote. Well I wasn't sure what you were going to release. I took a look at your website and it seems like you're making good progress at echogent.com from the looks of things. >It's a BSD license, and gawd knows I learned most > of the basics from your rc.pf to begin with. :) Shucks. I don't know much from licenses, though. That's my brothers side of the family. > Honestly I'm flattered that anyone's using it all besides me... I'm not. You made it very well. It's was cool of you to analyze all those inbound services and script them in the rules file. That's looks like a neat hobby. Have you announced if for any other os or just for LEAF users? If you haven't, that's an awful lot of succinct data on inbound services to hide at LEAF. > Quick question: when you start it up, does it blow > away what was there by default, or will there be conflict? Yes it runs a global flush and clobbers any of the good work that Charles runs by default. Funny thing is, I always thought it was just called Dachstein, not Dachstein Firewall. Once I ran it, though, I realized that Charles had gone past a general router, hardened it, and added a lot of nice touches like dnscache, and load balancing. As I was near completion, I rolled it out for Dachstein, anyway. > cheers, > Scott Got to code some Java now for a break. Btw, do you have any idea why a Nessus scan of my firewall would say that port 0 is open to udp and tcp in the form a bonk attack? I have those ports blocked the usual way, so I'm thinking they're spurious report items. Thanks, Matthew _______________________________________________ Leaf-devel mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-devel