Howdy,
So it's super easy to make firewall rules against "interface groups",
but there doesn't seem to be any way to make hostapd assign group id's
to the synthesized adapters when they are created.
I think the daemon needs some means to set the group ID number so that
it can be subjected to proactive firewalling.
A general hook could be added to call a script, but meh...
So it would be super nice if there was an ifgroup=N item that would be
the equivalent to:
"ip link set dev wlan0.sta2 group N"
Currently the interfaces just end up in the default (e.g. zero) group.
_______________________________________________
Hostap mailing list
Hostap@xxxxxxxxxxxxxxxxxxx
http://lists.infradead.org/mailman/listinfo/hostap