[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: NFS and IP filters



Ariel Biener wrote:

> It just occured to me that one could run a script immediately after the
> portmapper and the rpc services are up to create a dynamic firewalls
> ruleset.
					
				[...]

> Now, assuming you have a static ruleset, you concatenate the ruleset from
> that awk command I did above at the beginning of the ruleset file before
> running /etc/rc.d/init.d/ipfw start

Of course this breaks if you don't rerun it whenever the portmapper
or mountd is restarted.

=================================================================
To unsubscribe, send mail to linux-il-request@linux.org.il with
the word "unsubscribe" in the message body, e.g., run the command
echo unsubscribe | mail linux-il-request@linux.org.il