[Gllug] iptables and flaky ssh, ftp, vnc

Chris Bell chrisbell at overview.demon.co.uk
Tue Jun 21 23:20:44 UTC 2005


On Tue 21 Jun, Tom Schutzer-Weissmann wrote:
> 
> On Tue, 2005-06-21 at 16:37 +0100, Peter Grandi wrote:
> 
> > There is probably wrong with the 'iptables' rules too, they are
> > very very difficut to get right (and, as usual, very easy to get
> > wrong but ''working''). I usually recommend using a rule set
> > generator... But even that does not avoid the need for clear
> > thinking.
> 
> I'll stick my neck out. This is a semi-theoretical question. Given that
> I wanted as transparent a link as possible, isn't this the minimal
> ruleset I could have?
> 
> regards,
> Tom Weissmann
> 
   If the ADSL modem has an integral switch and is running NAT, could you
simply bridge from that to your local boxes, and not bother with
masquerading?


-- 
Chris Bell

-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug




More information about the GLLUG mailing list