BPF patch

Vladimir Yu. Stepanov vys at renet.ru
Tue Sep 6 02:13:48 PDT 2005


Vlad GALU wrote:
> On 9/1/05, Vladimir Yu. Stepanov <vys at renet.ru> wrote:
> [snip]
> 
>    You can always control which traffic to sniff (ingress/egress)
> using layer 2 filters (ether src/dst host <>).
> 


It's not a simple way. BPF filter code must be used depending on type
of device. For some of drivers (ppp, tun and etc) BPF filter cannot help
for filtering layer 2.


More information about the freebsd-hackers mailing list