Florin Andrei <[EMAIL PROTECTED]> wrote: > > Is it going to be possible to combine stateless 1:1 NAT with stateful > filtering?
It is but it's pointless unless you can somehow enumerate the bad guys (or a superset of them) and redirect them to NOTRACK. Cheers, -- Visit Openswan at http://www.openswan.org/ Email: Herbert Xu ~{PmV>HI~} <[EMAIL PROTECTED]> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt - To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html
