| To: | netdev@xxxxxxxxxxx, netfilter-devel@xxxxxxxxxxxxxxxxxxx |
|---|---|
| Subject: | any plans for a really lowlevel netfilter hook? |
| From: | Chris Friesen <cfriesen@xxxxxxxxxxxxxxxxxx> |
| Date: | Mon, 08 Sep 2003 15:43:26 -0400 |
| Sender: | netdev-bounce@xxxxxxxxxxx |
| User-agent: | Mozilla/5.0 (X11; U; Linux i686; en-US; rv:0.9.8) Gecko/20020204 |
|
I've got a wn2k session running in vmware configured with bridged ethernet. In this mode, windows accessses the hardware and gets a separate IP address from the linux host. I assume that it's done through a packet socket or something like that. Anyways, I had been hoping to be able to filter the packets, but it seems that they get pulled off before they hit the ip stack, and so iptables is useless. ebtables seems to only affect bridged stuff, so I don't think that it would be applicable either. What I'd like would be some kind of netfilter hook really early and really late (before and after packet sockets, respectively). Any plans for such? Chris -- Chris Friesen | MailStop: 043/33/F10 Nortel Networks | work: (613) 765-0557 3500 Carling Avenue | fax: (613) 765-2986 Nepean, ON K2H 8E9 Canada | email: cfriesen@xxxxxxxxxxxxxxxxxx |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [PATCH] sdla non-module build fix., Jeff Garzik |
|---|---|
| Next by Date: | [PATCH][ATM] seqfile conversion for net/atm/proc.c, chas williams |
| Previous by Thread: | [PATCH] sdla non-module build fix., Stephen Hemminger |
| Next by Thread: | [PATCH][ATM] seqfile conversion for net/atm/proc.c, chas williams |
| Indexes: | [Date] [Thread] [Top] [All Lists] |