Re: using iptables with tun/tap interfaces? no rule sees tun/tap interface traffic

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

Marek Kierdelewicz a écrit :
> 
>> tcpdump: WARNING: tap0: no IPv4 address assigned
> 
> So you're bridging.
> 
> Make sure /proc/sys/net/bridge/bridge-nf-call-iptables is set to 1.

It is by default.
But -i/-o must match the bridge interface, not the port. Ports can be
matched with the physdev match as you pointed out in another post.

Tomasz asked :
>
> Should I use ebtables for this?

Yes, if ebtables can do what you need.
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux