You *can't*, that's simple.
Forget the ebtables/marking shit, I did a firewall with it (which worked
flawlessly of course) and then I trashed it after seeing how disgusting
was the code. Do not use linux, it simply can't do the task in a
feasible way. We are really gone backwards concerning bridging firewalls.
Niccolò
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html