On Wed, 11.06.14 11:13, Rusty Bird ([email protected]) wrote:

> Lennart Poettering:
> > I am not convinced that the firewall being broken should break the
> > boot.
> 
> It shouldn't! But there should be at least an option (arguably the
> default) to break *connectivity*.

well, but that's better solved with the firewalling logic itself. For
example by first installing a drop-all rule in the tables, which is
finally removed when all updated have been made. Should the script fail,
then the firewall will not let any data through, and you should be fine.

I am not convinced that the init system should be involved in such a
logic.

Lennart

-- 
Lennart Poettering, Red Hat
_______________________________________________
systemd-devel mailing list
[email protected]
http://lists.freedesktop.org/mailman/listinfo/systemd-devel

Reply via email to