iptables - -syn
hi guys ,
I am writing my rc.packetfilter scripts, and i was wondering if i needed any rules like these there. iptables -A INPUT -p tcp --syn -i eth0 --dport 23 -j ACCEPT.(what will a rules like this do) The problem i am having now is that i seem not to understand fully waht the syn does. pls i need more clarification on how this is use and basiclly what is does. Thanks |
First off, DO NOT use telnet.
But that rule would be explained like this: Code:
Append a rule for incoming (Traffic coming to this server) |
SYN packet is the first one that comes when a connection is established (well...at the time of syn there's no connection yet). If you want to allow a connection to a specific port, you need to allow such packets pass. There's no need to use --syn if you already allow --state NEW.
|
All times are GMT -5. The time now is 05:33 PM. |