20080629

Slashdot | Beating Comcast's Sandvine On Linux With Iptables

Slashdot | Beating Comcast's Sandvine On Linux With Iptables: "As my subject says. This is why you only put the filter on the specific port you are using for P2P traffic. For instance, my rule is as follows:

iptables -I FORWARD 3 -p tcp --dport 36745 --tcp-flags RST RST -j DROP;

The above does what it says, drop TCP RST packets on port 36745. That is all you need to do to keep it from affecting your other network applications which may be getting legit reset packets."