interface or source ip match using brouting - transparent proxy

Andrius Kazimieras Kasparavičius <[email protected]> Wed, 19 Apr 2006 14:29:37 +0300
Newsgroups gmane.linux.network.bridge.ebtables.user
Message-ID <[email protected]>
hi, internally I am using 10/8 ip network and internal bridge card is eth1, I am using iptables and ebtables. I want only internal trafic incoming through eth1 to proxy, so I use:

ebtables -t broute -A BROUTING -p IPv4 -i eth1 --ip-src 10.0.0.0/8 --ip-protocol 6 --ip-destination-port 80 -j redirect --redirect-target ACCEPT

but I try to swap cables between eth0 and eth1, and all works the same way, even when I change client IP. Once tried match by source MAC, it did not work as well. I tried with ubuntu breezy and 
now latest dapper wit 2.6.15 kernel. Please advise me if I am doing something wrong way or ebtables just does not support that way and I should go other way?

many thanks
Andrius


-------------------------------------------------------
This SF.Net email is sponsored by xPML, a groundbreaking scripting language
that extends applications into web and mobile media. Attend the live webcast
and join the prime developer group breaking into this new coding territory!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=110944&bid=241720&dat=121642