On Mar 16, Martin Kraus <debian-b...@wujiman.net> wrote:

> It seems that returning failure in aclexec command in hosts.allow stops 
> processing 
> hosts.allow and starts processing hosts.deny which then must have 
> configuration to 
> block the connection.  Therefore aclexec in hosts.allow behaves differently 
> from 
> using it in hosts.deny which really isn't clear from the documentation which
I highly doubt that there is any point in changing the semantics at this 
point, also considering that the code is very mature and a bit obscure.
Feel free to submit documentation changes to better describe how it 
works.

-- 
ciao,
Marco

Attachment: signature.asc
Description: PGP signature

Reply via email to