On Tuesday 07 May 2002 2:19 pm, Nadav solomon wrote: > Sorry, let me rephrase the question, is there any type of content > filtering like CVP of Check Point for protocols like HTTP, FTP etc.?
I think you need to look at things like squid / snort / hogwash / amavis instead of Netfilter. There *is* a facility in Netfilter to dump packets to userspace, but it doesn't have Check Point's 'feedback' mechanism to pass packet contents back to Netfilter again, or to control the flow of packets based on analysis of the contents. You'd be better off looking at various proxy servers and similar, as suggested above if you want to do content filtering. Antony.
