diff --git a/Shorewall-docs/dhcp.xml b/Shorewall-docs/dhcp.xml index bb32bca75..a6a79b43b 100644 --- a/Shorewall-docs/dhcp.xml +++ b/Shorewall-docs/dhcp.xml @@ -15,13 +15,15 @@ - 2002-11-03 + 2004-01-10 2001 2002 + 2004 + Thomas M. Eastep @@ -35,6 +37,16 @@ + + For most operations, DHCP software interfaces to the Linux IP stack + at a level below Netfilter. Hence, Netfilter (and therefore Shorewall) + cannot be used effectively to police DHCP. The dhcp + interface option described in this article allows for Netfilter to stay + out of DHCP's way for those operations that can be controlled by + Netfilter and prevents unwanted logging of DHCP-related traffic by + Shorewall-generated Netfilter logging rules. + +
If you want to Run a DHCP Server on your firewall