From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 4.0.0 (2022-12-14) on finch.gentoo.org X-Spam-Level: X-Spam-Status: No, score=-1.1 required=5.0 tests=DMARC_NONE,MAILING_LIST_MULTI, NICE_REPLY_A,RCVD_IN_MSPIKE_H3,RCVD_IN_MSPIKE_WL autolearn=unavailable autolearn_force=no version=4.0.0 Received: from starcraft.mweb.co.za (starcraft.mweb.co.za [196.2.45.78]) by chiba.3jane.net (Postfix) with ESMTP id 17CD5ABD6A for ; Wed, 5 Jun 2002 18:14:21 -0500 (CDT) Received: from cpt-dial-196-30-179-123.mweb.co.za ([196.30.179.123] helo=nosferatu.lan) by starcraft.mweb.co.za with esmtp (Exim 4.01) id 17Fjya-0003MT-00 for gentoo-dev@gentoo.org; Thu, 06 Jun 2002 01:14:06 +0200 Subject: Re: [gentoo-dev] net forwarding From: Martin Schlemmer To: Gentoo-Dev In-Reply-To: <3CFEE382.9050103@seul.org> References: <3CFEDEF8.5050604@seul.org> <20020606001204.59b15ff8.spider@gentoo.org> <3CFEE382.9050103@seul.org> Content-Type: text/plain Content-Transfer-Encoding: 7bit X-Mailer: Ximian Evolution 1.0.5 Date: 06 Jun 2002 01:12:44 +0200 Message-Id: <1023318797.7552.76.camel@nosferatu.lan> Mime-Version: 1.0 Sender: gentoo-dev-admin@gentoo.org Errors-To: gentoo-dev-admin@gentoo.org X-BeenThere: gentoo-dev@gentoo.org X-Mailman-Version: 2.0.6 Precedence: bulk Reply-To: gentoo-dev@gentoo.org List-Help: List-Post: List-Subscribe: , List-Id: Gentoo Linux developer list List-Unsubscribe: , List-Archive: X-Archives-Salt: 8398c81e-92a3-49a3-9781-517101f31e44 X-Archives-Hash: 0234090b481216cef0a802252efb4356 On Thu, 2002-06-06 at 06:22, Marko Mikulicic wrote: > Spider wrote: > > Topposting ;) > > > > I prefer to use : > > echo "1" > /proc/sys/net/ipv4/ip_forward > > instead of the sysctl variant.. and I do this both "on" and "off" in my > > iptables script.. that's where I consider it "fitting" > > may I ask you why do you prefer the /proc variant ? I have no prejudice > on both, > but I'm wondering why there is some many "sysctl" based scripts > (in other distros). > > I thought iptables was the "IP packet filter". Ip forwarding > can be used for other things, like openvpn tunneling or other > routing stuff which doesn't depend on iptables, right? What if I don't > have installed iptables ? Where it should go then ? > > I would avoid to complicate the /etc/init.d/net script. Perhaps a > separated /etc/init.d/net_forwarding (not sure about the nomenclature) ? > If /etc/sysctl.conf is present, /etc/init.d/bootmisc will run sysctl automatically at boot. -- Martin Schlemmer Gentoo Linux Developer, Desktop Team Developer Cape Town, South Africa