AIX

AIX

Connect with fellow AIX users and experts to gain knowledge, share insights, and solve problems.


#Power
 View Only

Changes to ip packet filtering

  • 1.  Changes to ip packet filtering

    Posted Wed March 19, 2008 09:07 AM

    Originally posted by: SystemAdmin


    I recently upgraded a server from 5.3 ML3 to 5.3 ML5 SP6. The number of protocol option available in the genfilt command went up. Previously tcp or tcp/ack were the only tcp related protocols, now there are tcp/syn, tcp/fin and a bunch more. My problem, previously a rule written to catch protocol tcp/ack caught anything with the ACK flag set. Now if both the SYN and ACK flags are set tcp/ack no longer catches the packet but tcp/syn will. Is this by design or a bug? If it is a bug is it fixed in a newer version of AIX?
    #AIX-Forum