Re: DHCP-Daemon bypasses Linux iptables

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi Joerg,

you could try to bind your dhcpd on a pseudo bridge interface and filter with ebtables. The syntax is quite the same as the usage of iptables...

kind ragards,
   Martin


On Thu, 20 Apr 2006, Joerg Pommnitz wrote:

Hello all,
I was seriously puzzled why iptables could not stop dhcp requests from reaching ISC dhcpd. Now I found the reason: instead of listening on a UDP socket dhcpd installs a LPF similar to tcpdump or ethereal. This bypasses the protection from the firewall. What can I do to regain that protection?

--  Regards
      Joerg








[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux