> another requirement might be to not only filter non-IP protocols, but to 
 > filter any protocol (even IP) at a lower layer in the stack.  this would 
 > allow someone to deploy a filtering system that doesn't necessarily have 
 > any IP interfaces configured (such as a layer-2 bridge that also does 
 > layer-3 and above filtering, aka a transparent firewall).

IIRC, SunScreen used to have this feature.

-- 
meem
_______________________________________________
networking-discuss mailing list
[email protected]

Reply via email to