Subj : Re: CVS commit web/html/i
To : Angus Mcleod
From : Belly
Date : Sat Apr 09 2005 01:52 am
Re: Re: CVS commit web/html/i
By: Angus Mcleod to Belly on Sat Apr 09 2005 12:08 am
> > (are they even called 'chains' anymore? 'Table' just doesn't sound
> > right.)
>
> No, they are still chains. iptables recognises three tables called
> 'filter', 'nat' and 'mangle'. These tables contain default *chains*.
>
> The 'filter' table contains 'INPUT', 'FORWARD' and 'OUTPUT' chains. The
> 'nat' table contains 'PREROUTING', 'POSTROUTING', and 'OUTPUT' chains. I
> can't remember what and all is in the 'mangle' table.
>
> User-defined chains are created in a particular table:
>
> /usr/sbin/iptables --table filter -N my_user_defined-chain
>
> and then you can --append or --insert rules into the user defined or
> pre-defined chains as usual, and --jump to the user defined chains from
> one of the built-in chains as needed.
>
> Chains have not gone away. They have just been organized into tables.
I assume that what you meant to say was 'yes'
:^P
o
(O)
BeLLy
---
þ Synchronet þ **** BraziBBS: bbs.brazi.net ****
.