Post by kuokoSi, pero' il significato semantico di ESTABLISHED e RELATED mi sono
anch'essi ignoti....:(
In definitiva vorrei capire il comportamento di IPTABLES in modo piu'
pratico utilizzando tale regola.... se possibile...
*****************************
States for --ctstate:
*****************************
INVALID
The packet is associated with no known connection.
NEW
The packet has started a new connection, or otherwise associated with a
connection which has not seen packets in both directions.
ESTABLISHED
The packet is associated with a connection which has seen packets in
both directions.
RELATED
The packet is starting a new connection, but is associated with an
existing connection, such as an FTP data transfer, or an ICMP error.
UNTRACKED
The packet is not tracked at all, which happens if you explicitly
untrack it by using -j CT --notrack in the raw table.
SNAT
A virtual state, matching if the original source address differs from
the reply destination.
DNAT
A virtual state, matching if the original destination differs from the
reply source.