Tue Aug 27 08:27:04 CEST 2013


--- Comment #2 from phil at sanewall.org 2013-08-27 08:27:04 CEST ---
Yes, it works fine when the uid is establishing the connection. It fails when
the uid is listening.

Host 1

# sudo iptables -A OUTPUT -p tcp -m owner --uid-owner 1000 -j REJECT

pdw at compaq:~$ echo hi | nc bathroom.mit.edu 79
nw61-310-8.mit.edu [] 79 (finger) : Connection refused
pdw at compaq:~$ echo hi | nc -l -p 8888

Host 2
dell:~ bob$ echo "ho" | nc compaq 8888

