Dear Jack,

Sorry, there is currently no way to export the ruleset or to manage separate rulesets.

The sorting of the rules within the Little Snitch preference pane has no functional meaning. You can change the sort order of rules by clicking on the column header of the table. By sorting, you can group rules by application, by Internet address, by port number, by protocol or by the action taken.

More specific rules override general rules, regardless of their order in the listing.
A rule for a particular application overrides a rule for "any" application.
A rule for a particular Internet address overrides a general rule.
Only the first rule which matches is applied.
If no rule matches, the Little Snitch alert panel appears.
Here is an example rule set for a particular application:


 TheApplication Deny any connection.
 (deny general any network communication)

 TheApplication Allow any connection to localhost.
 (allows connections which are local on your machine)

 TheApplication Allow any connection to local network.
 (allows connections within your local networks)

 TheApplication Deny any connection to broadcast addresses.
 (deny broadcast within your local network)

You can add these rules in any order, the sorting has no meaning.
All these four rules above are only valid for "TheApplication" and override more general rules like "Allow any connection to your local network"


All rule sets are protected against modifications from outside by a checksum.
How to restore the default ruleset:
1) Open the Little Snitch preference pane within the "System Preferences" application.
2) Click on the round "lock" button to unlock the preference pane.
You will be asked for your username and password.
3) Select "Restore Default Rules ..."


Regards,
Karl Schwarzott
--
Objective Development
http://www.obdev.at/

On 05.03.2004, at 10:34, John Corliss wrote:

Is there a way to get a listing of the rule set as a separate file?

I would also like to have the possibility to save rule sets, and have the possibility to load different sets other than simply the default. Any chance for that in the future?

My default set has 29 rules. All are "Allow" rules except for two, "slpd Deny any connection" and "ntpd Deny UDP connections to port 2000 (callbook)". The first rule is "Any application Allow TCP connections to 0.0.0.0. - 0.0.0.255"

This somehow doesn't seem correct, but I could be misunderstanding something. I thought sets start wit general denials and proceed to specific permissions. Could the default set be corrupted? Can I find out somehow what the default set should be? Can anyone refer me to a web site where the rules of creating filters can be learned?

Thanks for any info

Jack Corliss

_______________________________________________
Littlesnitch-talk mailing list
[EMAIL PROTECTED]
http://at.obdev.at/mailman/listinfo/littlesnitch-talk

_______________________________________________ Littlesnitch-talk mailing list [EMAIL PROTECTED] http://at.obdev.at/mailman/listinfo/littlesnitch-talk

Reply via email to