Tom Eastep wrote:
> Christian Vieser wrote:

>> So, the question is: When the first connection is established, how can I 
>> mark
>> all further connections (from the origin of the connection or to the 
>> destination
>> of the connection) to use the same provider, as long as the first 
>> connection
>> stays established?
> 
> Try using the 'SAME' MARK/CLASSIFY target in a tcrule that specifies the
> ftps client's address in the SOURCE column.
> 

Note that SAME works slightly differently than what you asked -- so long
as a connection matching the rule has sent a packet within the last five
minutes, all other packets that match the rule will get the same mark.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Come build with us! The BlackBerry(R) Developer Conference in SF, CA
is the only developer event you need to attend this year. Jumpstart your
developing skills, take BlackBerry mobile applications to market and stay 
ahead of the curve. Join us from November 9 - 12, 2009. Register now!
http://p.sf.net/sfu/devconference
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to