Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Why are the hook points restricted in NF_INET_LOCAL_IN & NF_INET_PRE_ROUTING? #28

Open
helloray opened this issue Nov 8, 2017 · 0 comments

Comments

@helloray
Copy link

helloray commented Nov 8, 2017

According to iptables user manual, we are suggest to do filter work only in iptables filter table. There are three chains in it: INPUT, FORWARD, OUTPUT. Why does this module restrict the hook points in NF_INET_LOCAL_IN & NF_INET_PRE_ROUTING. The PRE_ROUTING chain does not exist in filter table. Can you explain it?

I want to filter DNS traffic in a router. Can I use this module in FORWARD chain?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant