You are not logged in.

#1 2010-12-12 04:16:30

fukawi2
Ex-Administratorino
From: .vic.au
Registered: 2007-09-28
Posts: 6,224
Website

iptables conditions

I need a backup MX server, but backup MX servers are always abused for spam delivery since it's difficult to implement the same anti-spam measures on a backup MX as on the primary...

Long story short, I want to use iptables to only accept port 25 when the primary MX is NOT responding.

The iptables "condition" module (http://www.tummy.com/journals/entries/j … 717_164535) seems to be perfect -- have a script check the primary MX every X minutes, and alter the corresponding file in /proc depending if it is up/down, but the "condition" module seems to be mythical -- there's talk, but I can't find the actual module.

Does anyone have any other ideas, other than having the script explicitly alter the iptables rules instead of the entries in /proc?

Offline

#2 2010-12-13 01:45:20

ao
Member
From: 青
Registered: 2008-02-02
Posts: 16

Re: iptables conditions

The 'condition' module is part of xtables_addons: http://aur.archlinux.org/packages.php?ID=25716

Offline

#3 2010-12-13 04:50:33

fukawi2
Ex-Administratorino
From: .vic.au
Registered: 2007-09-28
Posts: 6,224
Website

Re: iptables conditions

Ah, that's handy to know! Thx big_smile

Offline

Board footer

Powered by FluxBB