Subject: Re: Should loose source routing be enabled if not IPFORWARDING?
To: None <mark@nirvana.good.com>
From: Charles M. Hannum <mycroft@gnu.ai.mit.edu>
List: current-users
Date: 12/15/1994 13:12:43
   I prefer the approach like the BSDI firewall kit where you install 
   filter expressions into the kernel.

Yes, and I would go further and say that it should use the existing
bpf filter mechanism, to avoid duplicating code.  If it needs to be
extended, then so be it.