From mboxrd@z Thu Jan 1 00:00:00 1970 From: Steve Comfort Subject: MAC Address filter on wireless interface Date: Mon, 13 Mar 2006 16:23:19 +0200 Message-ID: <44158057.20203@4dllc.com> Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-bounces@lists.netfilter.org Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: text/plain; charset="us-ascii"; format="flowed" To: netfilter@lists.netfilter.org Hi All, I have been trying to get MAC address filtering to work on our wireless card - so far without success : The rules I am using are listed below : for M in $(cat /etc/mac.allow) ; do $IPT -A INPUT -i $WIFI_IF -m mac --mac_source $M -j ACCEPT done for M in $(cat /etc/mac.allow) ; do $IPT -A INPUT -i $WIFI_IF -m mac --mac-source ! $M -j DROP done (I do have CONFIG_IP_NF_MATCH_MAC turned on). I'm running on an ARM processor with kernel 2.4.21-rmk1 Is it in fact possible to filter on MAC addresses over a WiFi interface, or am I doing something stupid? Best regards Steve Comfort