Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 30266 - genkernel could include netfilter (iptables) requirements by default
Summary: genkernel could include netfilter (iptables) requirements by default
Status: RESOLVED WONTFIX
Alias: None
Product: Gentoo Hosted Projects
Classification: Unclassified
Component: genkernel (show other bugs)
Hardware: All Linux
: High enhancement (vote)
Assignee: Brad House
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2003-10-03 11:49 UTC by tmarzolf@hotmail.com
Modified: 2004-01-18 13:46 UTC (History)
3 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description tmarzolf@hotmail.com 2003-10-03 11:49:37 UTC
Why not include the netfilter (iptables) requirements to genkernel's default
kernel config?

It seems that for ease of security this should be a part of any basic gentoo
instalation unless specifically excluded. 



Reproducible: Always
Steps to Reproduce:
1.
2.
3.
Comment 1 John Davis (zhen) (RETIRED) gentoo-dev 2003-10-22 19:57:22 UTC
iptables is a pretty broad set of modules, especially w/ gentoo-sources.
What should we add? The entire set of modules, or just those to get NAT and
a decent firewall going?
Comment 2 tmarzolf@hotmail.com 2003-10-24 04:23:55 UTC
The modules required to set up a decent firewall would scratch my itch, and
I could certiantly see the NAT specific stuff being usefull as well. I'll
leave it to bigger and better minds than mine to determine whether the full
set of modules would be usefull. 

For what it's worth, once I've chosen to use a tool like genkernel, I'd rather
spend the cycles and time to have *everything* compiled as a module and at
my disposal. 

Comment 3 John Davis (zhen) (RETIRED) gentoo-dev 2003-11-18 09:28:30 UTC
livewire - if you have no objections, I will add these in to the 2.4 series as well as the 2.6 series default configs.
Comment 4 Bob Johnson (RETIRED) gentoo-dev 2003-11-18 10:12:51 UTC
They need to be added to the kernel-config of each
kernel patchset also
Comment 5 John Davis (zhen) (RETIRED) gentoo-dev 2003-12-09 12:49:49 UTC
since you are doing genkernel now, here you go :)
Comment 6 Brad House 2004-01-18 13:46:08 UTC
err, this is really really old
reopen if issues still exist with genkernel 3.0