"Scott C. Best" wrote:
> 
> Matt:
>         Sounds good! I haven't checked echoWall on Oxygen yet,
> so good going.

  Thanks Scott, but they don't make it easy.  There's no /etc/version 
or convenient uname switch so a script can determine what OS it's 
running on.

  I think I had to grep /etc/issue and figure that 4.0.* means Dachstein.
Other than that, cut works differently and grepping network.conf is a bit 
different.  Even though Dachstein has a more minimal set of busybox commands, 
I was able to do 99% of what I wanted to.

>         BTW, please *do* feel free to "plagiarize" from what
> I wrote. 

Well I wasn't sure what you were going to release.
I took a look at your website and it seems like 
you're making good progress at echogent.com from the looks 
of things.

>It's a BSD license, and gawd knows I learned most
> of the basics from your rc.pf to begin with. :) 

Shucks.  I don't know much from licenses, though.
That's my brothers side of the family.

> Honestly I'm flattered that anyone's using it all besides me...

I'm not.  You made it very well.  It's was cool of you to analyze 
all those inbound services and script them in the rules file.  That's 
looks like a neat hobby.  Have you announced if for any other os or just
for LEAF users?  If you haven't, that's an awful lot of succinct
data on inbound services to hide at LEAF.

>         Quick question: when you start it up, does it blow
> away what was there by default, or will there be conflict?

Yes it runs a global flush and clobbers any of the good work 
that Charles runs by default.  Funny thing is, I always thought 
it was just called Dachstein, not Dachstein Firewall.  Once I ran 
it, though, I realized that Charles had gone past a general router, 
hardened it, and added a lot of nice touches like dnscache, and load 
balancing.  As I was near completion, I rolled it out for Dachstein,
anyway.

> cheers,
> Scott

Got to code some Java now for a break.  Btw, do you have any idea
why a Nessus scan of my firewall would say that port 0 is open to
udp and tcp in the form a bonk attack?  I have those ports blocked
the usual way, so I'm thinking they're spurious report items.

Thanks,
Matthew

_______________________________________________
Leaf-devel mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-devel

Reply via email to