, the
lost
of functionality (compated with iptables) is easily noticed
--
Rodrigo Barbosa - rodrigob at tisbrasilcombr
TIS - Belo Horizonte, MG, Brazil
Quis custodiet ipsos custodes? - http://wwwtisbrasilcombr/
Brainbench Certified
that with ipchains. You can try rinetd, if you
really don't want to change.
ipchains works just fine, but switching to iptables would require too much
downtime. Unless there is a rc.firewall converter app?
I have seen some of these around, but never tested one.
--
Rodrigo Barbosa
a standard finger daemon, but a little fingerd
daemon I created, yafingerd (shameless plug). Avaliable at sourceforge.
[]s
--
Rodrigo Barbosa - rodrigob at tisbrasil.com.br
TIS - Belo Horizonte, MG, Brazil
Quis custodiet ipsos custodes? - http
to iptables.
That is not quite right.
IPTABLES use a module called conntrack, which by itself should solve most
of your NAT needed without special tweakies, like ipchains needed.
[]s
--
Rodrigo Barbosa - rodrigob at tisbrasil.com.br
TIS - Belo
is the same. You only use different hooks.
So a bug in the code would affect both interfaces.
All that said, you should definitily use iptables.
--
Rodrigo Barbosa - rodrigob at tisbrasil.com.br
TIS - Belo Horizonte, MG, Brazil
Quis custodiet ipsos