Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #191513

Re: Iptables at boot

Path csiph.com!feeder.erje.net!2.eu.feeder.erje.net!eternal-september.org!feeder.eternal-september.org!aioe.org!bofh.it!news.nic.it!robomod
From Alessandro Vesely <vesely@tana.it>
Newsgroups linux.debian.user
Subject Re: Iptables at boot
Date Thu, 25 Jan 2018 10:20:01 +0100
Message-ID <vbLRn-3WS-3@gated-at.bofh.it> (permalink)
References <vaa7v-6Lo-5@gated-at.bofh.it> <vaciZ-8in-3@gated-at.bofh.it> <vaekN-18N-1@gated-at.bofh.it> <vatWy-2Nr-13@gated-at.bofh.it>
X-Original-To debian-user@lists.debian.org
X-Mailbox-Line From debian-user-request@lists.debian.org Thu Jan 25 09:09:50 2018
Old-Return-Path <vesely@tana.it>
X-Amavis-Spam-Status No, score=-9.41 tagged_above=-10000 required=5.3 tests=[BAYES_00=-2, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, LDO_WHITELIST=-5, RCVD_IN_DNSWL_MED=-2.3, T_RP_MATCHES_RCVD=-0.01] autolearn=ham autolearn_force=no
X-Policyd-Weight NOT_IN_SBL_XBL_SPAMHAUS=-1.5 NOT_IN_BL_NJABL=-1.5 CL_IP_EQ_FROM_MX=-3.1; rate: -6.1
Dkim-Signature v=1; a=rsa-sha256; c=relaxed/relaxed; d=tana.it; s=beta; t=1516871372; bh=Wq1/whYHSYWfculZkTsHlC4csjwvXQ3PRA82tS7q1gY=; l=666; h=To:References:From:Date:In-Reply-To; b=NDsk0zYNEIhKZkJUWfFTAwArqq3RALmrDC8FjSMT0Cde7HY3V2h4pas3GWH+pMc+n ItIjtVZfZg+EApqPxDLSqhjyyhZe7PO98mmO3viL9WPdTSucmfwRJ3cNft55IVvdrl CPjhIPUNH6f55eGD4IdKTkRb6k8etPSRt9OR5ajE=
Authentication-Results tana.it; auth=pass (details omitted)
Openpgp id=0A5B4BB141A53F7F55FC8CBCB6ACF44490D17C00
User-Agent Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.5.2
MIME-Version 1.0
Content-Type text/plain; charset=us-ascii
Content-Language en-US
Content-Transfer-Encoding 7bit
X-Mailing-List <debian-user@lists.debian.org> archive/latest/731305
List-ID <debian-user.lists.debian.org>
List-URL <https://lists.debian.org/debian-user/>
List-Archive https://lists.debian.org/msgid-search/e0a1f5ae-0959-4fde-f3f4-e13a74b6e781@tana.it
Approved robomod@news.nic.it
Lines 19
Organization linux.* mail to news gateway
Sender robomod@news.nic.it
X-Original-Date Thu, 25 Jan 2018 10:09:31 +0100
X-Original-Message-ID <e0a1f5ae-0959-4fde-f3f4-e13a74b6e781@tana.it>
X-Original-References <ec660538-7676-4009-b6b6-be2595319d46@free.fr> <20180121010207.3bw4wbvftzihenjz@ddeb.ddeb.net> <20180121030505.ldm7m4yw5up6lzoy@kazuki.local> <816506e1-b475-7e9d-bdf9-8c47cc4df96e@transient.nz>
Xref csiph.com linux.debian.user:191513

Show key headers only | View raw


On Sun 21/Jan/2018 20:53:43 +0100 Ben Caradoc-Davies wrote:
> On 21/01/18 16:05, Mark Fletcher wrote:
>> To get you started [addressing the OP], here is the service file I use:
> 
> Mine is slightly different and has the commands inline:
> 
> 
> $ cat /etc/iptables/iptables.service
> [Unit]
> Description=iptables rules
> After=network.target

Shouldn't that be /network-pre.target/?  I'm not familiar with systemd (I use
sysvinit) but I read "It's primary purpose is for usage with firewall services
that want to establish a firewall before any network interface is up" in:
https://www.freedesktop.org/wiki/Software/systemd/NetworkTarget/

Best
Ale

Back to linux.debian.user | Previous | NextPrevious in thread | Next in thread | Find similar | Unroll thread


Thread

Iptables at boot Jacques Rodary <rodaryj@free.fr> - 2018-01-20 23:50 +0100
  Re: Iptables at boot Dejan Jocic <jodejka@gmail.com> - 2018-01-21 02:10 +0100
    Re: Iptables at boot Mark Fletcher <mark27q1@gmail.com> - 2018-01-21 04:20 +0100
      Re: Iptables at boot Dejan Jocic <jodejka@gmail.com> - 2018-01-21 10:10 +0100
      Re: Iptables at boot Ben Caradoc-Davies <ben@transient.nz> - 2018-01-21 21:00 +0100
        Re: Iptables at boot Alessandro Vesely <vesely@tana.it> - 2018-01-25 10:20 +0100
    Re: Iptables at boot Karol Augustin <karol@augustin.pl> - 2018-01-22 17:00 +0100

csiph-web