All of lore.kernel.org
 help / color / mirror / Atom feed
* Communication Redirect (Revised)
@ 2003-04-30 20:50 Sapient2003
  2003-04-30 22:47 ` Cedric Blancher
  0 siblings, 1 reply; 2+ messages in thread
From: Sapient2003 @ 2003-04-30 20:50 UTC (permalink / raw)
  To: netfilter

OpenBSD uses the packet filter pf to redirect communications to a 
program. Is ther anything like this for Linux? I tried IPTABLES for this 
task, like so: iptables -t filter -A INPUT -p udp -s 0/0 -d 66.47.159.11 
--destination-port 53 -j REDIRECT dns ... As it turns out, REDIRECT 
isn't for forwarding packets to another program...



^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: Communication Redirect (Revised)
  2003-04-30 20:50 Communication Redirect (Revised) Sapient2003
@ 2003-04-30 22:47 ` Cedric Blancher
  0 siblings, 0 replies; 2+ messages in thread
From: Cedric Blancher @ 2003-04-30 22:47 UTC (permalink / raw)
  To: Sapient2003; +Cc: netfilter

Le mer 30/04/2003 à 22:50, Sapient2003 a écrit :
> OpenBSD uses the packet filter pf to redirect communications to a 
> program. Is ther anything like this for Linux? I tried IPTABLES for this 
> task, like so: iptables -t filter -A INPUT -p udp -s 0/0 -d 66.47.159.11 
> --destination-port 53 -j REDIRECT dns ... As it turns out, REDIRECT 
> isn't for forwarding packets to another program...

Netfilter has no such feature. What you can do is have your program
listen to a local port and then redirect traffic to this local UDP port
53. If you have a DNS server listening on this port, you're done.

This is a basic stup for transparent proxying.

-- 
Cédric Blancher  <blancher@cartel-securite.fr>
IT systems and networks security - Cartel Sécurité
Phone : +33 (0)1 44 06 97 87 - Fax: +33 (0)1 44 06 97 99
PGP KeyID:157E98EE  FingerPrint:FA62226DA9E72FA8AECAA240008B480E157E98EE


^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2003-04-30 22:47 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-04-30 20:50 Communication Redirect (Revised) Sapient2003
2003-04-30 22:47 ` Cedric Blancher

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.