On Mon, 14 Aug 2006 16:12:36 GMT, Robert Harris <(E-Mail Removed)> wrote:
>
>The kernel rejects packets it can't route; it doesn't buffer them up.
>Your ppp/ip-down script should restore your system to how it was before
>it ran the ppp/ip-up script. That way, your routing table will stay
>right and subsequent ip-up's won't make repetitious additions to your
>list of filter rules.
Yes, I do something like this. Startup puts firewall into localnet mode,
ip-up switches iptables to 'world' mode, and ip-down knocks it back to
localnet mode, ~2 years on ADSL with modem in bridge mode, no problems.
Grant.
--
http://bugsplatter.mine.nu/