Re: Create new NetFilter table

2014-01-10 Thread David Lang
On Fri, 10 Jan 2014, Victor Porton wrote: I propose to create a new NetFilter table dedicated to rules created programmatically (not by explicit admin's iptables command). Otherwise an admin could be tempted to say `iptables -F security` which would probably break rules created for example by

Re: Create new NetFilter table

2014-01-10 Thread Victor Porton
10.01.2014, 21:39, "Joshua Brindle" : > Victor Porton wrote: > >>  I propose to create a new NetFilter table dedicated to rules created >> programmatically (not by explicit admin's iptables command). >> >>  Otherwise an admin could be tempted to say `iptables -F security` which >> would probabl

Re: Create new NetFilter table

2014-01-10 Thread Joshua Brindle
Victor Porton wrote: I propose to create a new NetFilter table dedicated to rules created programmatically (not by explicit admin's iptables command). Otherwise an admin could be tempted to say `iptables -F security` which would probably break rules created for example by sandboxing software (

Create new NetFilter table

2014-01-10 Thread Victor Porton
I propose to create a new NetFilter table dedicated to rules created programmatically (not by explicit admin's iptables command). Otherwise an admin could be tempted to say `iptables -F security` which would probably break rules created for example by sandboxing software (which may follow same-