* frantisek holop <[EMAIL PROTECTED]> [2006-03-07 03:15]:
> hmm, on Mon, Feb 27, 2006 at 03:12:14PM -0700, Bob Beck said that
> >     because you're only added the whitelist entry, not deleted
> > a grey one. 
> > 
> >     The grey entry is harmless, it will get reaped out of there
> > in 4 hours when it expires..
> 
> wouldn't it make sense to delete the grey entry if one adds an ip
> using -a?

        Why? I don't think it makes sense to delete when adding.

        You seem to think there will be one grey entry. there could
be many, depending on how many combinations of FROM And TO have been
attempted from that IP address.
> 
> seems like that if i have an ip both WHITE/GREY, and -d it, only
> the WHITE is gone.  i don't know what is the "right" thing
> to expect here, i expected that both get nuked....

        No, GREY entries are not keyed by IP - they are keyed by
tuple i.e. IP/FROM/TO

> 
> but if -a took care of the GREY entry, these ambiguities would go away.
> or could be in the man page please.
> 
        -a adds, just like it says in the man page. it does not
delete. 

> (this is a 3.8 stable)
> 
> -f
> -- 
> an optimist invented an airplane; a pessimist a parachute.
> 

-- 
| | |         The ASCII Fork Campaign
 \|/       against gratuitous use of threads.
  |

Reply via email to