Simpla folosire a unei reguli SNAT va incarca modulul ip_conntrack. Nu 
te poti feri de conntrack decit daca nu faci NAT!

Radu Radoveneanu wrote:

>adica ai reguli de genul
>-m state --state ESTABLISHED,RELATED -j ACCEPT in firewall ?
>Paul Darvaru said:
>  
>
>>da nene e detoate mashina aia firewall router nat-box p.... masii ce nu
>>mai
>>e
>>juma de tzeava mancata deja
>>
>>----- Original Message -----
>>From: "Patrascu Eugeniu" <[EMAIL PROTECTED]>
>>To: <[EMAIL PROTECTED]>
>>Sent: Tuesday, September 16, 2003 3:47 PM
>>Subject: [rlug] Re: ICMP packet size 92
>>
>>    
>>
>>>faci cumva si statefull firewall pe aceeasi masina ?
>>>      
>>>
>
>  
>



--- 
Detalii despre listele noastre de mail: http://www.lug.ro/


Raspunde prin e-mail lui