Gentoo Archives: gentoo-user

From: Tanstaafl <tanstaafl@×××××××××××.org>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: iptables - do I need the nat table?
Date: Sun, 11 Apr 2010 11:06:05
Message-Id: 4BC1A88D.9060902@libertytrek.org
In Reply to: [gentoo-user] Re: iptables - do I need the nat table? by Kerin Millar
1 On 2010-04-10 10:26 PM, Kerin Millar wrote:
2 > On 10/04/2010 23:17, Tanstaafl wrote:
3 >> This is on a server box, and I am *not* doing NAT on it...
4 >>
5 >> Do I even need the nat table? If not, I'd like to build the kernel
6 >> without NAT support, but if there's a good reason not to do that, I
7 >> won't...
8
9 > If you will not be populating the nat table, you are free to build the
10 > kernel without CONFIG_NF_NAT and its associated options.
11
12 Thanks Kerin...
13
14 Same question then for the raw table...
15
16 I'm a bit clueless when it comes to firewalls, and have no idea what
17 these numbers mean/do:
18
19 *raw
20 :PREROUTING ACCEPT [4911:886011]
21 :OUTPUT ACCEPT [4546:2818732]
22 COMMIT
23
24
25 --
26
27 Charles

Replies

Subject Author
Re: [gentoo-user] Re: iptables - do I need the nat table? Graham Murray <graham@×××××××××××.uk>