-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On Friday 02 May 2003 13:05, Stef Coene scrawled: > On Friday 02 May 2003 17:58, openings wrote: > > Dear folks > > > > > > With U32 filter, I can filter packets with it's packet header. > > > > In linux, I wonder if Layer-7 filtering is possible. > > > > I want to filter packets that include specific pattern in it's > > payload(not header, data part). > > > > ex) Packets that include "aaa.exe" text pattern in it's data part. > > > > If it is possible, mail traffic that include specific text pattern can be > > filtered. > > > > I thought that above function is very useful. > > > > In Linux, is it possible? > > Iptables can filter based on text in a packet. At the same time, you can > mark the packet and that mark can be used with the fw filter. > > Stef The Layer 7 traffic policing project (http://l7-filter.sourceforge.net/) aims to do the very thing. Ashok -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQE+zSYnRhXpVty0Ty4RAuPcAKCEWzShBSssfjkc6sS5Mmjs4DJkPwCcCGsQ 0o8zQUvY8NHeqscNACTcGMw= =0a95 -----END PGP SIGNATURE-----