Linux en Syn-3 Forum

English Only => Syn-3 => Topic gestart door: Stefan Schmiedl op Februari 09, 2006, 08:08:00



Titel: Firewall configuration foolproof?
Bericht door: Stefan Schmiedl op Februari 09, 2006, 08:08:00
Translating firewall messages into German made me wonder, if the setup is really foolproof:
  • you can't remove your IP address from the admin list, so you should always be able to connect
  • DENY takes precedence over ALLOW
Who will win if I manage to deny access for a network range, in which my IP address is located?

Regards,
Stefan


Titel: Re: Firewall configuration foolproof?
Bericht door: edwin op Februari 11, 2006, 12:23:44
The admin list will ALWAYS take precedence over all the other rules.
The actual order is:
1. admin accept list
2. deny list
3. accept list.