On Monday 08 July 2002 3:56 pm, Antony Stone wrote:

> On Monday 08 July 2002 3:46 pm, Lukas Ruf wrote:
> > iptables -P INPUT ACCEPT
> > iptables -P OUTPUT ACCEPT
> > iptables -P FORWARD ACCEPT

I'd prefer to see:
iptables -P INPUT DROP
iptables -P OUTPUT DROP
iptables -P FORWARD DROP

Then you add in the rules for the stuff your definitely know you want to 
allow.

> > iptables -F
> > iptables -X
>
> Don't forget:
> iptables -F -t nat
> iptables -F -t mangle
>
> Antony.
>
> > but rtfm.
>
> Always good advice :-)
>
> > On Mon, 08 Jul 2002, Denis JULIEN wrote:
> > > How can I clear all iptables chains before that my FW script be
> > > launched?
> > >
> > > thank in advance
> > >
> > > Denis

Reply via email to