On 10/6/10 11:25 AM, Brian J. Murrell wrote: > On Wed, 2010-10-06 at 11:18 -0700, Tom Eastep wrote: >> >> It should already work for the SOURCE address; > > Heh. My first rule with a MAC address was destination. > >> it will never work for DEST >> address since netfilter doesn't allow matching by destination MAC address. > > Am I just going about this accounting incorrectly then? For a given > host I (wanted to) have: > > acc_brian_a:COUNT - eth0.1 br-lan:~00-16-DC-5E-F0-06 > acc_brian_a:COUNT - br-lan:~00-16-DC-5E-F0-06 eth0.1 > DONE - - br-lan:~00-16-DC-5E-F0-06 > DONE - br-lan:~00-16-DC-5E-F0-06 > > To account for both incoming and outgoing traffic to the device with > that MAC address.
And I'm telling you, that is never going to work. -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Beautiful is writing same markup. Internet Explorer 9 supports standards for HTML5, CSS3, SVG 1.1, ECMAScript5, and DOM L2 & L3. Spend less time writing and rewriting code and more time creating great experiences on the web. Be a part of the beta today. http://p.sf.net/sfu/beautyoftheweb
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
