Ethernet bridge filtering

From HeepyWiki
Revision as of 20:01, 11 September 2009 by Morris (talk | contribs) (moved Ethernet bridging to Ethernet bridge filtering)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

If tap0 and eth0 are bridged, and there is ARP noise coming from 00:30:48:77:18:d2 on the local network (eth0's) you can block ARP packets from 00:30:48:77:18:d2 from being forwarded out tap0 with:

ebtables -A FORWARD -p ARP -o tap0 -s 00:30:48:77:18:d2 -j DROP