Does it matter if iptables isn't running on my honeypot?, (Thu, Apr 25th)

I’ve been working on comparing data from different DShield [1] honeypots to understand differences when the honeypots reside on different networks. One point of comparison is malware submitted to the honeypots. During a review of the summarized data, I noticed that one honeypot was an outlier in terms of malware captured. 

Article Link: Does it matter if iptables isn't running on my honeypot? - SANS Internet Storm Center