From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Stephen Isard" Subject: Re: iptables rules for cups printer discovery Date: Thu, 14 Aug 2008 19:01:23 -0400 (EDT) Message-ID: <9850-87553@sneakemail.com> References: <19894-78618@sneakemail.com> <18385-66657@sneakemail.com> <11653-43715@sneakemail.com> Mime-Version: 1.0 Return-path: In-Reply-To: Sender: netfilter-owner@vger.kernel.org List-ID: Content-Type: TEXT/PLAIN; charset="us-ascii"; format="flowed" Content-Transfer-Encoding: 7bit To: netfilter@vger.kernel.org On Thu, 14 Aug 2008, Jan Engelhardt jengelh-at-medozas.de |netfilter| wrote: > > On Thursday 2008-08-14 16:54, Stephen Isard wrote: >> >>> You could write a layer-4 connection tracker >> >> Maybe you could, but I'm not sure that I could :-) At what level >> would this operate? Kernel? > > Kernel. Parallel to things like nf_conntrack_ftp. Mm. I'm sure it would be educational to try, but I think I may just do my printer discovery by social engineering - ask the departmental computing officers for the ip numbers.