On Fri, Nov 09, 2001 at 07:34:57PM -0500, [EMAIL PROTECTED] wrote: > Unfortunately, IPCHAINS does not have this capability. This is > known as a "stateful" firewall because it knows about existing > connections.
Well, of course you can deny at least incoming syn packets. That way a session cannot be established. This is enough in most of the cases, since non-syn packets can be let in, no external host can establish connections that way. Greetings Bernd > On Fri, Nov 09, 2001 at 11:46:28AM -0500, Sam Mabjish wrote: > > I am having trouble coming up with rules to DENY > > sessions originating somewhere on the Internet > > outside my network. _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls
