On Tue, 2003-08-12 at 02:46, Frank Tegtmeyer wrote: > Hi, > > is there any reason that the Windows ports in common.def are set to > reject instead of DROP? > I like to slow scanners down if possible, so DROP would be the natural > choice. > The only ports where I use reject are ident (to be friendly) and some > annoying P2P ports (to get them stopped faster).
As its name tries to imply, common.def is the DEFAULT common file. If you don't like it, create /etc/shorewall/common and put the rules that YOU like in it. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://shorewall.net Washington USA \ [EMAIL PROTECTED] ------------------------------------------------------- This SF.Net email sponsored by: Free pre-built ASP.NET sites including Data Reports, E-commerce, Portals, and Forums are available now. Download today and enter to win an XBOX or Visual Studio .NET. http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01 ------------------------------------------------------------------------ leaf-user mailing list: [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
