IPTABLES Three way Hand shack ?
Hi,
I need a rule for my IPTABLE for three way hand shack method. Example in a datail. Code:
1-Host A sends a TCP SYNchronize packet to Host B thanks mypass |
iptables -A INPUT -s A -d B --state NEW,ESTABLISHED,RELATED -j ACCEPT
iptables -A INPUT -s B -d A --state NEW,ESTABLISHED,RELATED -j ACCEPT |
Thanks "kaushalpatel" for the reply. Well can we break the IP table in more comprehensive way like as following
Code:
PC A to PB B |
FYI, Number of rules will add delay in the packet transitions. It also add headache for management when the scenarios is wide. In linux I follow the rule "KISS".
|
OP, I do hope you clean up the spelling in your commands in post #3 before you use try to use them.
|
gardenair, you might want to read up on the RELATED match, because it doesn't do what you seem to think it does. In fact, the RELATED match isn't even necessary for what you have outlined. Example:
Code:
iptables -A FORWARD -m state --state ESTABLISHED -j ACCEPT |
All times are GMT -5. The time now is 12:05 PM. |