DROP to some physdevs, and also FORWARD to others?

Luciano Rocha <[email protected]> Wed, 31 Oct 2007 19:12:15 +0000
Newsgroups gmane.linux.network.bridge.ebtables.user
Message-ID <[email protected]>
Hello,

I'd like to limit the ports some packets are forward to. I.e., for a
single packet, DROP it if output to some physical interface, but
ACCEPT it in others, all part of the same logical bridge.

If ebtables works like iptables, i.e., the rules are performed for the
original packet and not to each individual copy of the packet to be sent
to a physical interface, then this is not possible.

Am I right in assuming it can't be done?

The point of this exercise would be to remove the need for N vlan
interfaces plus N bridges for using under Xen, in order to export only a
defined set of vlans to the guests.

Thanks,
Luciano Rocha
-- 
lfr
0/0

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/

_______________________________________________
Ebtables-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/ebtables-user
signature.asc (application/pgp-signature, 189 B)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)

iD8DBQFHKNOPinSul6a7oB8RAjJEAJ9tpiYfRqaUVHptCH3ydicnvXB2fgCfYoP2
0TdKpsouPzvknS0QsXUZwo8=
=GqAS
-----END PGP SIGNATURE-----