![]() ahres Matches if the reserved field is filled with zero. ahlen length Total length of this header in octets. This module matches the parameters in Authentication header of This option is only valid in the POSTROUTING, limit-iface-out The address type checking can be limited to the interface the packet is This option is only valid in the PREROUTING, 0.0.0.0) UNICAST an unicast address LOCAL a local address BROADCAST a broadcast address ANYCAST an anycast packet MULTICAST a multicast address BLACKHOLE a blackhole address UNREACHABLE an unreachable address PROHIBIT a prohibited address THROW FIXME NAT FIXME XRESOLVE -src-type type Matches if the source address is of given type -dst-type type Matches if the destination address is of given type -limit-iface-in The address type checking can be limited to the interface the packet isĬoming in. The following address types are possible: UNSPEC an unspecified address (i.e. The exact definition of that group depends on This module matches packets based on their address type.Īddress types are used within the kernel networking stack and categorizeĪddresses into various groups. Module of the same name as the protocol, to try making the option Only if an unknown option is encountered, iptables will try load a match If the -p or -protocol was specified and if and TheĮxtended match modules are evaluated in the order they are specified in the Module has been specified to receive help specific to that module. One line, and you can use the -h or -help options after the You can specify multiple extended match modules in m or -match options, followed by the matching module name Īfter these, various extra command line options become available, depending Iptables can use extended packet matching modules with the Iptables-extensions - list of extensions in the standard
0 Comments
Leave a Reply. |