Subject: Re: ip filtering
To: None <sreiz@aie.nl>
From: Marc Boschma <marcb@troy.ins.itg.telecom.com.au>
List: current-users
Date: 03/30/1994 09:57:06
> From owner-current-users@sun-lamp.cs.berkeley.edu Tue Mar 29 16:32:20 1994
> Date: Tue, 29 Mar 1994 17:55:12 +0200
> From: Steven Reiz <sreiz@aie.nl>
> To: current-users@sun-lamp.cs.berkeley.edu
> Subject: ip filtering
> Sender: owner-current-users@sun-lamp.cs.berkeley.edu
> Precedence: bulk

> Hi All!

> Has anyone done work on adding ip filtering (based on src/destination
.
.
.
>                 ip_forward(m, 0);

> could very simply be `enhanced' with code which checks ip addresses and
> such. I haven't really thought about how to modify the filtering table though
> (something like the route/netstat duo, probably).

> Any thoughts?

	I would suggest that DEC's screend be utilised. It basicly listens on
a character special device for IP headers from the kernel, decides what to do 
with them, and tells the kernel.

	David Burren (davidb@{werj, cpr.itg.telecom}.com.au was working on
just this, maybe you should drop him a line.

> 	-Steven

Marc B.
---
Marc A. Boschma
marcb@werj.com.au		marcb@troy.ins.itg.telecom.com.au

------------------------------------------------------------------------------