Tcpdump before iptables?

Juri Haberland haberland@altus.de
Wed, 25 Jul 2001 17:56:15 +0200


> Radel wrote:
> 
> I'm logging all incoming connections to port 137:139, and dropping
> packets, but I can see the netbios request on tcpdump listening on
> ippp0 interface (isdn link).
> So tcpdump can see packets that will be dropped by iptables?

Yes. (very good for debugging...)

Cheers,
Juri