Re: transparent firewall??

From: Matthias Andree (matthias.andree@stud.uni-dortmund.de)
Date: Wed Dec 05 2001 - 09:03:15 EST


On Wed, 05 Dec 2001, Romain Giry wrote:

> I'd like to know if anyone has a transparent firewall that is one that
> doesn't make any rules on the traffic but only always pass it without this
> beeing notified by the rest of the network system... this should help me to
> do my thesis. I would be like adding one transparent layer between the
> network layer (ip) and the link layer (physical).

Semi-transparent: Proxy ARP, works at a site that I administer.

Really transparent: Check out bridge.sourceforge.net, that project -
among other goals - aims at making Linux 2.4's bridge code aware of
netfilter.

I'm not quite sure if some BSD variants can already do that (FreeBSD
maybe), check their sites as well.

Hope that helps.
Matthias

P. S.: the "To" address of your news-to-list gateway is
"mlist-linux-kernel", which breaks list detection and automatic list
replies in some mailers, notably mutt. Please include Mail-Followup-To:
headers or have the administrator of the news-to-mail gate fix their
configuration. Thanks a lot.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Fri Dec 07 2001 - 21:00:30 EST