Design proposal for a better ACL language

Achim Gratz Stromeko at nexgo.de
Tue Jun 14 18:39:35 UTC 2016


Daniel Franke writes:
>> Are there other good ACL languages that we can steal the spec or
>> implementation from
>
> Most of the features we want to match on (basically everything except
> IP/port) are NTP-specific, so not directly. But a lot of my design was
> inspired by iptables.

Sorry for the sidetracking, but while you mention iptables: if we can
presume the existence of a packet filter in the OS, would it perhaps
make sense to not implement that part of the filtering in ntpd and leave
it to that filter?


Regards,
Achim.
-- 
+<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+

SD adaptation for Waldorf rackAttack V1.04R1:
http://Synth.Stromeko.net/Downloads.html#WaldorfSDada



More information about the devel mailing list