iptables/firewall brainstorming

Nicolas Mailhot nicolas.mailhot at laposte.net
Sun Jun 14 19:40:31 UTC 2009


Le dimanche 14 juin 2009 à 12:30 -0600, Kevin Fenzi a écrit :

> In the case of a package that does not need any configuration done and
> only needs a firewall rule to function, we could add a file in there to
> add it's rule. 

Anything that does not include a way to signal the admin a hole was just
poked in the firewall is broken security-wise

-- 
Nicolas Mailhot
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: Ceci est une partie de message
	=?ISO-8859-1?Q?num=E9riquement?= =?ISO-8859-1?Q?_sign=E9e?=
Url : http://lists.fedoraproject.org/pipermail/devel/attachments/20090614/21c131a6/attachment.bin 


More information about the devel mailing list