[Firehol-support] ACK RST on rejected services

Rich forums at artfulrobot.uk
Thu Mar 12 11:06:12 GMT 2015


Hi Costa,

I can confirm that that works as expected now:

✓ Implicit Drop: Logged in IN chain only, client times out
✓ Implicit Reject: Logged in IN chain only, client times out
✓ Implicit Drop; Explicit Drop for particular service: no log, client 
times out.
✓ Implicit Drop; Explicit Reject for particular service: no log, client 
rejected.
✓ Implicit Reject; Explicit Drop for particular service: no log, client 
times out.
✓ Implicit Reject; Explicit Reject for particular service: no log, 
client rejected.
✓ Implicit Accept; Explicit Drop for particular service: no log, client 
times out.
✓ Implicit Accept; Explicit Reject for particular service: no log, 
client rejected.

✗/✓ Implicit Accept; Implicit accept for particular service: no log, 
client rejected - but this is not a supported configuration anyway.

Thanks.

Rich




More information about the Firehol-support mailing list