Simpla folosire a unei reguli SNAT va incarca modulul ip_conntrack. Nu te poti feri de conntrack decit daca nu faci NAT!
Radu Radoveneanu wrote: >adica ai reguli de genul >-m state --state ESTABLISHED,RELATED -j ACCEPT in firewall ? >Paul Darvaru said: > > >>da nene e detoate mashina aia firewall router nat-box p.... masii ce nu >>mai >>e >>juma de tzeava mancata deja >> >>----- Original Message ----- >>From: "Patrascu Eugeniu" <[EMAIL PROTECTED]> >>To: <[EMAIL PROTECTED]> >>Sent: Tuesday, September 16, 2003 3:47 PM >>Subject: [rlug] Re: ICMP packet size 92 >> >> >> >>>faci cumva si statefull firewall pe aceeasi masina ? >>> >>> > > > --- Detalii despre listele noastre de mail: http://www.lug.ro/
