LARTC
[Top] [All Lists]

Re: [LARTC] Using iptables level7/ipp2p match in a bridge

To: Mail List - Linux Advanced Routing and Traffic Control <lartc@mailman.ds9a.nl>
Subject: Re: [LARTC] Using iptables level7/ipp2p match in a bridge
From: Grant Taylor <gtaylor@riverviewtech.net>
Date: Thu, 28 Dec 2006 19:31:40 -0600
Delivered-to: sp-com-lists@consult.net
Delivered-to: lartc-list@securepoint.com
Delivered-to: lartc@outpost.ds9a.nl
In-reply-to: <020c01c72ae7$8e9722f0$0100a8c0@newlife>
List-archive: <http://mailman.ds9a.nl/pipermail/lartc>
List-help: <mailto:lartc-request@mailman.ds9a.nl?subject=help>
List-id: "Mailinglist of the Linux Advanced Routing &amp; Traffic Control project" <lartc.mailman.ds9a.nl>
List-post: <mailto:lartc@mailman.ds9a.nl>
List-subscribe: <http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc>, <mailto:lartc-request@mailman.ds9a.nl?subject=subscribe>
List-unsubscribe: <http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc>, <mailto:lartc-request@mailman.ds9a.nl?subject=unsubscribe>
References: <020c01c72ae7$8e9722f0$0100a8c0@newlife>
Sender: lartc-bounces@mailman.ds9a.nl
User-agent: Thunderbird 1.5.0.9 (X11/20061206)
Ming-Ching Tiew wrote:
Subject almost says it all, I wonder if there is a way for me
to use iptables matches like l7 and/or ipp2p match in a bridge ( one ethernet in and one ethernet out ) ?

Yes there is. Read my previous post (http://mailman.ds9a.nl/pipermail/lartc/2006q4/019935.html) for more information. In short, what you want to do is enable IPTables (layer 3 and up) to be able to operate on bridged (layer 2) traffic. "Bridged IP/ARP packets filtering" will allow you to do exactly what you are wanting to do.



Grant. . . .
_______________________________________________
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc

<Prev in Thread] Current Thread [Next in Thread>