OK, so what you're saying is the packet was logged up in the pre-routing NAT section before it got dropped by the blacklisting filter at the Forward section?

Thanks,

Tony


Tom Eastep wrote: <<snip>>


No. Blacklist rules are enforced in the 'filter' table whereas DNAT is logged out of the 'nat' table. See http://www.shorewall.net/NetfilterOverview.html


-Tom



------------------------------------------------------- This SF.net email is sponsored by: IBM Linux Tutorials. Become an expert in LINUX or just sharpen your skills. Sign up for IBM's Free Linux Tutorials. Learn everything from the bash shell to sys admin. Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click ------------------------------------------------------------------------ leaf-user mailing list: [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to