Re: transparent firewall??

Matthias Andree (matthias.andree@stud.uni-dortmund.de)
Wed, 5 Dec 2001 15:03:15 +0100


On Wed, 05 Dec 2001, Romain Giry wrote:

> I'd like to know if anyone has a transparent firewall that is one that
> doesn't make any rules on the traffic but only always pass it without this
> beeing notified by the rest of the network system... this should help me to
> do my thesis. I would be like adding one transparent layer between the
> network layer (ip) and the link layer (physical).

Semi-transparent: Proxy ARP, works at a site that I administer.

Really transparent: Check out bridge.sourceforge.net, that project -
among other goals - aims at making Linux 2.4's bridge code aware of
netfilter.

I'm not quite sure if some BSD variants can already do that (FreeBSD
maybe), check their sites as well.

Hope that helps.
Matthias

P. S.: the "To" address of your news-to-list gateway is
"mlist-linux-kernel", which breaks list detection and automatic list
replies in some mailers, notably mutt. Please include Mail-Followup-To:
headers or have the administrator of the news-to-mail gate fix their
configuration. Thanks a lot.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/