27.02.2011, 18:04, "Alex Bligh" <alex@xxxxxxxxxxx>: > By default netfilter appears to apply iptables rules (specifically the > FORWARD chain) to bridged packets. Is there a way to turn this off > (i.e. only apply the FORWARD chain to routed packets, not bridged > ones)? I seem to remember there is, but I can't for the life of > me find the configuration setting. net.bridge.bridge-nf-call-iptables = 0 -- wbr, Oleg. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html