man iptables

[!] --syn


               Only match TCP packets with the SYN bit set and the               
ACK and FIN bits cleared.  Such packets are used to               
request  TCP  connection  initiation;  for example,               
blocking such packets coming in an  interface  will               
prevent  incoming TCP connections, but outgoing TCP               
connections will be unaffected.  It  is  equivalent               to  
--tcp-flags  SYN,RST,ACK  SYN.  If the "!" flag               precedes 
the "--syn", the sense of  the  option  is               inverted.

sorry pentru layout.


> Cum pot sa pun o regula prin care sa spun ca numai calculatoarele
> de pe o interfata a unui ruter (cu adresa A.B.C.0) pot initia o
> conexiune HTTP spre net( la ele sa nu se ajunga cu o conexiune
> neinitiata de ele)? Multumesc
> Gabriel
>
> ---
> Detalii despre listele noastre de mail: http://www.lug.ro/

-- 


"Let's be realistic and try the impossible." - Che Guevara


--- 
Detalii despre listele noastre de mail: http://www.lug.ro/


Raspunde prin e-mail lui