One thing that we give up with iptables-restore is the ability to include
DNS names in Shorewall config files (iptables-restore does not perform DNS
name resolution). I personally don't consider that a great loss since I've
never used that feature and I actively discourage others from using it.
Bu
On Wed, 2007-02-28 at 07:44, Tom Eastep wrote:
> One thing that we give up with iptables-restore is the ability to include
> DNS names in Shorewall config files (iptables-restore does not perform DNS
> name resolution). I personally don't consider that a great loss since I've
> never used that feat