[OE-core] [PATCH 3/5] iptables: add default rules

Kang Kai Kai.Kang at windriver.com
Tue Jun 24 01:38:29 UTC 2014


On 2014年06月23日 18:42, Burton, Ross wrote:
> On 23 June 2014 03:32, Kai Kang <kai.kang at windriver.com> wrote:
>> +# Firewall configuration written by system-config-securitylevel
>> +# Manual customization of this file is not recommended.
> That's just going to be confusing to anyone who doesn't know that this
> file was copied directly from RedHat.

OK, I'll remove them.

>
> Also, is it sensible to ship a static firewall configuration?  The one
> thing we're not is one-size-fits-all.

I just want users could start iptables without any professional work. 
And these static firewall rules are common for desktop/server.
Or does the empty rule is better? Anyone who wants to use iptables 
writes his/her own rules. But it is a little difficult for the people 
who not familiar with iptables.

Any suggestion?

Thanks,
Kai

>
> Ross
>
>


-- 
Regards,
Neil | Kai Kang




More information about the Openembedded-core mailing list