I am developing for an ISP that uses wireless bridges as the link from the 
customer into the ISP interior net. One thing that we must be able to keep a 
customer from doing is respond to ARP requests. For example, a customer could 
set the IP address of one his machines to be that of the default router for 
the interior bridged subnet. This is a bad thing. Therefore, I need to filter 
ARP responses from all customer nets, which implies being able to filter ARP 
responses from a particular bridge slave interface. So far I have not found a 
way to do this using the iptables netfilter and the bridge. Has anyone else 
encountered this problem?

rtg

-- 
Tim Gardner - [EMAIL PROTECTED] 406-443-5357
TriplePoint, Inc. - http://www.tpi.com
PGP: http://www.tpi.com/PGP/Tim.txt 
_______________________________________________
Bridge mailing list
[EMAIL PROTECTED]
http://www.math.leidenuniv.nl/mailman/listinfo/bridge

Reply via email to