RE: Query

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> -----Original Message-----
> From: netfilter-bounces@xxxxxxxxxxxxxxxxxxx
> [mailto:netfilter-bounces@xxxxxxxxxxxxxxxxxxx]On Behalf Of Rob
> Sterenborg
> Sent: Friday, February 10, 2006 8:31 AM
> To: netfilter@xxxxxxxxxxxxxxxxxxx
> Subject: Re: Query
> 
> 
> I'm not sure if iptables can capture 
> (and log) all
> packets just like a sniffer can.

You're right Rob, iptables cannot capture all the packets like a sniffer.  iptables is Layer 3 so you'd miss anything below.  For example, if you wanted to capture PPPoE packets (PADI, PADO, etc), you'd miss them with iptables.

Cheers,
-pablo




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux