> Thing that I still have to check is wheather I can send packages from
> the module (I don't see why not) and at which level this firewall is

If you are careful. You may be running in interrupt context  (in net_bh)

> lurking at. Priority number is not clear yet etc.
> But as far as I have understood all routing (don't know about loopback)
> will go trough it.

All incoming frames for that AF go via the firewall input. Any that it decides
to forward then go via the forward rules. Anything (forward or otherwise)
being sent out goes via the output rules.

The priority is which firewall gets first lookin. The kernel firewall (ipchains)
adds itself at the least priority - ie it is last so that a module can
override its policy

-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]

Reply via email to