摘要
介绍了Linux 2.6内核中的Iptables、Ebtables的功能,比较了两者的主要特性;然后在分析Iptables对数据包和Ebtables对数据帧的处理流程的基础上,分析了Iptables/Ebtables对桥接和路由数据帧的处理流程;最后,应用Iptables/Ebtables实现了一个网桥防火墙的实例。
The functions of { Ip,Eb} tables in Linux Kernel 2.6 are introduced and their main characteristics are compared. The traversal process of packets in Iptables chains, the traversal process of frames in Ebtables chains and the traversal process of bridged and routed frames in Iptables/Ebtables chains are analyzed. Finally, an instance of bridging firewall based on Iptables/Ebtables is designed.
出处
《苏州大学学报(自然科学版)》
CAS
2006年第2期56-60,共5页
Journal of Soochow University(Natural Science Edition)