Can I use netfilter or iptables to capture a packet which is wrapped by a Ethernet frame with multicast mac address, but the destination IP address (a unicast address) is not the local one? According to my experiments, a local application can get such Ethernet frames by a raw socket, but the payload, the IP packet with unmatched IP dest., cannot be delivered to upper layers. Can iptables capture it and put it in QUEUE? Thanks -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html