Date: Mon, 17 May 2004 11:57:31 +0100 (Hal Murray) writes:

>>with the scripting returning "ACCEPT" or "REJECT" according to some
>>parameters ( src ip / dest ip / src port / dest port / protocol etc )
>>Or is my question just stupid?
> I'd call it impractical. The accept/reject decision is made in
> the kernal for each packet. There isn't time to run user code.

There's the whole user-mode queueing module whose existence suggests there
may be time to do something with some of the packets in code... :)


