In order for the firewall to DROP a packet, it has to first allow the packet to enter the firewall for checking.
If the firewall is set to REJECT the packet, it simply closes the port and doesn't accept connections on it, making it look like it's closed. On Thu, 19 Sep 2002, Brenden Walker wrote: > I was adding some logging to my IPTables configuration, and thought I'd ask > this question. I noticed that if I DROP UDP packets the scan.sygatetech.com > UDP scanner reports the ports as open, if I reject it reports them as > closed. > > I have a feeling this is a problem with the sygate scan, can't imagine how a > UDP packet that's getting jumped to DROP would look like an open port. > > I'm pretty sure I'm still properly secured, just wondering if anyone has any > information on this.. Thanks. > > > > -- redhat-list mailing list unsubscribe mailto:[EMAIL PROTECTED]?subject=unsubscribe https://listman.redhat.com/mailman/listinfo/redhat-list