Re: [SLUG] Verisign Annoyance?

From: Matt Miller (Matthew.Miller@wellcare.com)
Date: Fri Sep 26 2003 - 17:08:30 EDT


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Friday 26 September 2003 04:51 pm, Levi Bard wrote:
> So, what's the consensus, iptables or route? I'm personally leaning
> toward iptables on the principle that it will only affect, say, my
> incoming traffic, whereas if I use route, every packet will have to
> cascade through the routing table before hitting the default route (in my
> case).

<disclaimer>
I did not read the whole thread, so my post may not be relevant.
</disclaimer>

I say use iptables. You have more control. You can specify source
address/network and destination address/network as well which interface to
filter from/to in addition to defining the packet filter(s) before or after
routing (PRE- , POST-).

- --
Matt Miller
Senior Sun Engineer
WellCare

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQE/dKrRIomZUAi8ewYRAoZYAJ4uDuvOl49UVuvm5blSw/a9oyrjxQCgmtOv
J5G1+8t5u8c/weMXQ4noxuI=
=+xdb
-----END PGP SIGNATURE-----

-----------------------------------------------------------------------
This list is provided as an unmoderated internet service by Networked
Knowledge Systems (NKS). Views and opinions expressed in messages
posted are those of the author and do not necessarily reflect the
official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 19:04:41 EDT