Firewalls seem to be taking up all of my time this past couple of weeks.
I have LINUX box acting as firewall, that is all it does. NAT and filtering. The NAT comes first (in the iptables) then the filtering.. that is some ip addresses that I want to DROP.
The way I have this set up it appears that the routing is taking place before the DROP, is this the way it does in fact happen? Can I just rearrange the sequence in the iptables? Or when I restart iptables will it just put it back anyway?