Kraken Iptables NCHOVY


Happy new year!

I'm implementing kraken-iptables now. It controls netfilter using iptables command line utility. At first time, I tried to implement it using JNI and libiptc. However, it was too complicated (iptables has complex plugin architecture) and I have to decode binary chunk (there is no easy structure member access). It's not meaningful job, and JNI is not portable. Because of this, I decided to use output of iptables user-mode program.

I'll implement heavily used match/target extensions first. Maybe I cannot implement all extensions for this time. There are too many extensions. I didn't know that so many extensions are built.. Orz..


----
2011-01-01 19:21 - added reject-with target extension support

트랙백

이 글과 관련된 글 쓰기 (트랙백 보내기)
TrackbackURL : http://xeraph.com/tb/5416074 [도움말]

핑백

  • Xeraph@NCHOVY : 2011년 내 이글루 결산 2011-12-28 00:57:38 #

    ... 낼 수 있겠네요. xeraph님은 올 한해 이글루스에서 8,451번째로 게시물을 가장 많이 작성하셨네요. 1위: kraken(146회) | Kraken Iptables 2위: lisp(4회) | ANSI Common Lisp 2장. 리스트 3위: maven(4회) | Maven 3.0 관련 scp ... more

덧글

  • 2011/01/01 21:48 # 답글 비공개

    비공개 덧글입니다.
  • xeraph 2011/01/01 22:04 #

    앗 여기에 덧글이 ㅋㅋ.. 요새 보셨던 것 중에 좋은게 있으면 감사히 받겠습니다 ㅎㅎ (다만 안 겹치는지 확인만..)
댓글 입력 영역