Portál AbcLinuxu, 11. května 2025 09:28
na BSD systemoch mas 2 moznosti ...Na FreeBSD mas 3 moznosti, pf, ipf, ipfw. Filtrovanie podla MAC vie minimalne ipfw, IIRC.
A large number of bug fixes, changes, and optimizations to our packet filter pf(4) including: * packet tagging (e.g. filter on tags added by bridge based on MAC address) * stateful TCP normalization (prevent uptime calculation and NAT detection) * passive OS detection (filter or redirect connections based on source OS)a to este dakedy roku pana 2003...
* packet tagging (e.g. filter on tags added by bridge based on MAC address)i pres mou chabou anglictinu je mi jasne spojeni "added by bridge" :) takze PF neumi filtrovat podle MAC, delat to brconfig ktery to otaguje a pak to ofiltrujete v PF podle tagu.
pf
nevie robit nic na zaklade MAC adresy; vie maximalne tak zabezpecit, ze "nieco" urobi externy system.
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.