Re: Layer 7 application blocking via tc/iptables?

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sat, 2003-08-30 at 11:24, Martin A. Brown wrote:
>  : >  You can place the fwmark on one machine, and then
>  : > iptables block it on another if necessary.
>  :
>  : Can you do that?
> 
> No.
> 
>  : AFAIK, the fwmark disappears when it leaves the machine.
> 
> This is accurate.  The fwmark is metadata and is only available on the box
> where the packet has been marked.

woops.

thanks for the correction, Folks.


cheers,
Steve


_______________________________________________
LARTC mailing list / LARTC@xxxxxxxxxxxxxxx
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux