From: Adam S. <ad...@sh...> - 2004-12-08 17:15:25
|
Tom Eastep wrote: > On Wed, 2004-12-08 at 12:07 -0500, Adam Sherman wrote: > >>Tom Eastep wrote: >> >>>>For iptables: >>>> >>>>policy (Seems to already be applied.) >>> >>>Yet "-m policy" doesn't work??? >> >>Doesn't this indicate that it is? >> >>$ sudo iptables -m policy >>iptables v1.2.11: policy match: no parameters given >>Try `iptables -h' or 'iptables --help' for more information. >> >>Also, "/lib/iptables/libipt_policy.so" is present. > > It indicates that it is working *in iptables*. The output from Shorewall > indicates that it isn't in your kernel (and in one of your earlier > posts, you agreed). Ah, I misunderstood you. Not sure why I thought that the policy patch was *only* for the userland tools. Thanks! A. -- Adam Sherman Technologist http://www.sherman.ca/ |