> -----Original Message----- > From: netfilter-bounces@xxxxxxxxxxxxxxxxxxx > [mailto:netfilter-bounces@xxxxxxxxxxxxxxxxxxx]On Behalf Of Rob > Sterenborg > Sent: Friday, February 10, 2006 8:31 AM > To: netfilter@xxxxxxxxxxxxxxxxxxx > Subject: Re: Query > > > I'm not sure if iptables can capture > (and log) all > packets just like a sniffer can. You're right Rob, iptables cannot capture all the packets like a sniffer. iptables is Layer 3 so you'd miss anything below. For example, if you wanted to capture PPPoE packets (PADI, PADO, etc), you'd miss them with iptables. Cheers, -pablo