Design proposal for a better ACL language
Achim Gratz
Stromeko at nexgo.de
Tue Jun 14 18:39:35 UTC 2016
Daniel Franke writes:
>> Are there other good ACL languages that we can steal the spec or
>> implementation from
>
> Most of the features we want to match on (basically everything except
> IP/port) are NTP-specific, so not directly. But a lot of my design was
> inspired by iptables.
Sorry for the sidetracking, but while you mention iptables: if we can
presume the existence of a packet filter in the OS, would it perhaps
make sense to not implement that part of the filtering in ntpd and leave
it to that filter?
Regards,
Achim.
--
+<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+
SD adaptation for Waldorf rackAttack V1.04R1:
http://Synth.Stromeko.net/Downloads.html#WaldorfSDada
More information about the devel
mailing list