packet filtering technology in Iptables

This is a discussion on packet filtering technology in Iptables within the Linux Security forums, part of the System Security and Security Related category; Hi, As far as I known, FW-1 does only keep track of state in the TCP and UDP level. ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 04-22-2004
sam
 
Posts: n/a
Default packet filtering technology in Iptables

Hi,

As far as I known, FW-1 does only keep track of state in the TCP and UDP
level. Can Iptables inspect packet up to application header of payload?

sam
Reply With Quote
  #2 (permalink)  
Old 04-22-2004
Christoph Scheurer
 
Posts: n/a
Default Re: packet filtering technology in Iptables

On Thu, 22 Apr 2004 14:41:52 +0800
sam <samwun@hgcbroadband.com> wrote:

> Hi,
>
> As far as I known, FW-1 does only keep track of state in the TCP
> and UDP level. Can Iptables inspect packet up to application
> header of payload?
>
> sam


AFAIK there is a patch for iptables to search for a regex in the
whole packet, but you rather use a proxy to filter depending on
application level headers and funnel with iptables the packet
transparently through the proxy.

Greets
Chris
Reply With Quote
  #3 (permalink)  
Old 04-23-2004
hdu
 
Posts: n/a
Default Re: packet filtering technology in Iptables

I am sure fw1 does keep track the body of packet also, if not how can it
handle ftp, sqlnet, ... packet?

"sam" <samwun@hgcbroadband.com> ??? news:c67qoj$2hfg$1@news.hgc.com.hk
???...
> Hi,
>
> As far as I known, FW-1 does only keep track of state in the TCP and UDP
> level. Can Iptables inspect packet up to application header of payload?
>
> sam



~ Let us linux ~


-----= Posted via Newsfeeds.Com, Uncensored Usenet News =-----
http://www.newsfeeds.com - The #1 Newsgroup Service in the World!
-----== Over 100,000 Newsgroups - 19 Different Servers! =-----
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 04:45 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0