Re: [LARTC] layer-7 filtering is possible in linux ?

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Friday 02 May 2003 13:05, Stef Coene scrawled:
> On Friday 02 May 2003 17:58, openings wrote:
> > Dear folks
> >
> >
> > With U32 filter, I can filter packets with it's packet header.
> >
> > In linux, I wonder if Layer-7 filtering is possible.
> >
> > I want to filter packets that include specific pattern in it's
> > payload(not header, data part).
> >
> > ex) Packets that include "aaa.exe" text pattern in it's data part.
> >
> > If it is possible, mail traffic that include specific text pattern can be
> > filtered.
> >
> > I thought that above function is very useful.
> >
> > In Linux, is it possible?
>
> Iptables can filter based on text in a packet.  At the same time, you can
> mark the packet and that mark can be used with the fw filter.
>
> Stef

The Layer 7 traffic policing project (http://l7-filter.sourceforge.net/) aims 
to do the very thing.

Ashok
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE+zSYnRhXpVty0Ty4RAuPcAKCEWzShBSssfjkc6sS5Mmjs4DJkPwCcCGsQ
0o8zQUvY8NHeqscNACTcGMw=
=0a95
-----END PGP SIGNATURE-----



[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux