You should be able to filter at the "eth0" level of your diagram... I kinda need more information on your "BRIDGE" before I could suggest something else.. If by bridge you mean it bridges the DSL modem and the LAN...then your eth0 is in the same machine you are calling a bridge? In that case you should theoretically filter the eth0 device --- Francis GASCHET <fg@xxxxxxxxx> wrote: > Hi list, > > Is there somebody who knows a possibility to apply netfilter rules to > ppp packets ? > > Configuration : > > DSL - PCI modem card - BRIDGE - eth0 (in a virtual machine) > > I would like to filter the traffic which flows across the bridge, but at > this level, the IP traffic is encapsulated... > > Any clue ? > > Ciao. > > -- > Francis GASCHET / NUMLOG > http://www.numlog.fr > Tel.: +33 (0) 130 791 616 > Fax.: +33 (0) 130 819 286 > > > > > ===== "No touchy NO TOUCHY! Emperor Kuzko -=Emperor's New Groove=-" __________________________________________________ Do you Yahoo!? The New Yahoo! Search - Faster. Easier. Bingo http://search.yahoo.com