> another requirement might be to not only filter non-IP protocols, but to > filter any protocol (even IP) at a lower layer in the stack. this would > allow someone to deploy a filtering system that doesn't necessarily have > any IP interfaces configured (such as a layer-2 bridge that also does > layer-3 and above filtering, aka a transparent firewall).
IIRC, SunScreen used to have this feature. -- meem _______________________________________________ networking-discuss mailing list [email protected]
