[Shorewall-users] ICMP

Ted Gervais ve1drg at av.eastlink.ca
Tue Dec 16 21:52:57 PST 2003


I was just running 'shorewall monitor'  and found the following:

Standard Chains

Chain INPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out  source   destination
    0     0 ACCEPT     all  --  lo     *    0.0.0.0/0  0.0.0.0/0
    0     0 DROP      !icmp --  *      *    0.0.0.0/0  0.0.0.0/0 state INVALID

What does this mean, where it says !icmp state INVALID??

---
Intuition, however illogical, is recognized as a command prerogative.
   -- Kirk, "Obsession", stardate 3620.7

Ted Gervais
Coldbrook Nova Scotia
Canada B4R1A7


More information about the Shorewall-users mailing list