Michael Kress wrote:
> Tom Eastep wrote:
>> Nothing -- There is no way currently to apply blacklisting to a bridge port.
>>   
> 
> So how could I block individuals with my setup as posted before?

There actually *is* a way.

Change your interfaces file to look like this:

world   br0             detect          bridge,routeback
-       br0:eth0        detect
loc     br0:vnet0       detect

And add a hosts file as follows:

net     eth0:0.0.0.0/0  blacklist

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA
-OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise
-Strategies to boost innovation and cut costs with open source participation
-Receive a $600 discount off the registration fee with the source code: SFAD
http://p.sf.net/sfu/XcvMzF8H
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to