[systemd-devel] [PATCH] Add a network-pre.target to avoid firewall leaks

Rusty Bird rustybird at openmailbox.org
Sun Jun 8 05:33:44 PDT 2014


Leonid Isaev:
> But by the time network.target is reached there are no listening services yet,
> are there? So, why would one need a firewall?

Adding to Djalal's and Mantas's examples, the systemd host may also be
a gateway with its firewall configured to forward only *some* packets.

Rusty

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freedesktop.org/archives/systemd-devel/attachments/20140608/33aced6d/attachment.sig>


More information about the systemd-devel mailing list