[KLUG Members] iptables

Bert Obbink members@kalamazoolinux.org
Tue, 30 Jul 2002 16:17:26 +0200


Hi all firewalling people,

I have a couple of questions regarding iptables,

first, when I use 'iptables -L' to list the current config, a line of 
the config apears one every two or three seconds, so the whole config 
takes some time to show. I can't find out any reason for this behaviour.

second, I want  to close the ident port (113) for all incomming 
connections except for thoose there is already a connection open. Some 
mail servers appear to need a open ident port before accepting email, or 
at least need significant more time to accept email. How can I make 
netfiler to accept incomming requests to this port when there is already 
an active (smtp) connection?


thanks,

Bert.