[clue-talk] iptables question

Joe "Zonker" Brockmeier xonker at gmail.com
Mon Dec 27 09:17:21 MST 2004


On Mon, 27 Dec 2004 08:40:55 -0700, Crawford Rainwater
<crawford.rainwater at linux-etc.net> wrote:
> Been playing around with iptables recently (and yes, it has been a
> while) and noticed that there is no longer a DENY policy, just ACCEPT
> and DROP.  I am guessing DROP = DENY these days, but when I run nmap, I
> see for various ports "open|filtered" by them vs. "closed".  What am I
> missing here?  Yes I know

Have you tried REJECT? ie, 

iptables -A INPUT -o eth0 -p tcp -dport 1433 -j REJECT

That should show up as closed. 

Best, 

Zonker
-- 
Joe "Zonker" Brockmeier
xonker at gmail.com
"Well, I've wrestled with reality for 35 years, doctor, and I'm happy
to state I finally won out over it." ~ Elwood P. Dowd, "Harvey"



More information about the clue-talk mailing list