[arch-general] [arch-dev-public] dropping tcp_wrapper support
Seblu
seblu at seblu.net
Sat Jul 16 14:31:28 EDT 2011
On Sat, Jul 16, 2011 at 7:32 PM, Vic Demuzere <vic at demuzere.be> wrote:
> On 16 July 2011 19:22, Andrea Scarpino <andrea at archlinux.org> wrote:
>>
>> old hosts.allow:
>> sshd: 192.
>> ntfs: 192.
>>
>> iptables:
>> -A INPUT -j REJECT
>> -A INPUT -p tcp -s 192.168.0.0/24 --dport ssh -j ACCEPT
>> -A INPUT -p tcp -s 192.168.0.0/24 --dport nfs -j ACCEPT
>> -A INPUT -p udp -s 192.168.0.0/24 --dport nfs -j ACCEPT
>>
>
> So, you're saying that those 4 lines are easier than the 2 short ones
> in hosts.allow? Ah well, I'll have to learn to write iptables scripts
> then, I suppose.
It's a shame that you doesn't know how to write iptables scripts. (joke)
tcp_wrappers are so old and so limited. I'm proud that archlinux drop this.
Regards,
--
Sébastien Luttringer
www.seblu.net
More information about the arch-general
mailing list