Ethernet bridge filtering

From HeepyWiki
Jump to: navigation, search

If tap0 and eth0 are bridged, and there is ARP noise coming from 00:30:48:77:18:d2 on the local network (eth0's) you can block ARP packets from 00:30:48:77:18:d2 from being forwarded out tap0 with:

ebtables -A FORWARD -p ARP -o tap0 -s 00:30:48:77:18:d2 -j DROP