Hello, netfilters!!

I would like to know about connection tracking.

I commanded iptables like this without any "-m state --state" in my 
iptables start script. (Becasue I heard that when one use Stateful 
Inspectionin function at iptables, the speed is a bit slow. btw, this is 
true or not?)

$IPTABLES -A INPUT -p TCP --sport 1024:65535 --dport 80 -j ACCEPT

But when I do like this..

cat /proc/net/ip_conntrack

I can find some lists which I guess connection tracking.

Does it mean that connection tracking is valid when I use "-m state 
--state" or not? 


Please give your answers,

Thanks in advance.




_________________________________________________________________
MSN Explorer�� ������ Hotmail ����� �ξ� ������ ���ϴ�. ���� 
http://explorer.msn.co.kr/ ���� ����� �ٿ�ε��ϼ���.


Reply via email to