On 10/6/10 11:25 AM, Brian J. Murrell wrote:
> On Wed, 2010-10-06 at 11:18 -0700, Tom Eastep wrote: 
>>
>> It should already work for the SOURCE address;
> 
> Heh.  My first rule with a MAC address was destination.
> 
>> it will never work for DEST
>> address since netfilter doesn't allow matching by destination MAC address.
> 
> Am I just going about this accounting incorrectly then?  For a given
> host I (wanted to) have:
> 
> acc_brian_a:COUNT - eth0.1                         br-lan:~00-16-DC-5E-F0-06
> acc_brian_a:COUNT - br-lan:~00-16-DC-5E-F0-06 eth0.1
> DONE            - -                                br-lan:~00-16-DC-5E-F0-06
> DONE            - br-lan:~00-16-DC-5E-F0-06
> 
> To account for both incoming and outgoing traffic to the device with
> that MAC address.

And I'm telling you, that is never going to work.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Beautiful is writing same markup. Internet Explorer 9 supports
standards for HTML5, CSS3, SVG 1.1,  ECMAScript5, and DOM L2 & L3.
Spend less time writing and  rewriting code and more time creating great
experiences on the web. Be a part of the beta today.
http://p.sf.net/sfu/beautyoftheweb
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to