[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[ale] Centrailized iptables rules management
- Subject: [ale] Centrailized iptables rules management
- From: kaboom at oobleck.net (Chris Ricker)
- Date: Fri, 19 Jan 2007 13:13:46 -0500 (EST)
- In-reply-to: <1169227025.21691.20.camel@localhost>
- References: <1168838278.5837.1.camel@localhost> <[email protected]> <1169227025.21691.20.camel@localhost>
On Fri, 19 Jan 2007, Jim Popovitch wrote:
> On Fri, 2007-01-19 at 11:54 -0500, Jerry Yu wrote:
> > I use CVS (sometimes RCS) to check in such rules. Filing them per host
> > or per type is more or less of personal preference.
> > Both a shell script to generate the rules and the saved working rules
> > are candidates to check in.
>
> Oooohh, good idea. Thanks.
If you want to go all out, it wouldn't be hard to extend rancid
<http://www.shrubbery.net/rancid/> to support iptables
later,
chris