From a8898f2fe086ecde6ee63d956c4acf4806661c14 Mon Sep 17 00:00:00 2001 From: teastep Date: Sun, 11 Jan 2004 19:24:05 +0000 Subject: [PATCH] Add disclaimer to DHCP article git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@1075 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb --- Shorewall-docs/dhcp.xml | 14 +++++++++++++- 1 file changed, 13 insertions(+), 1 deletion(-) diff --git a/Shorewall-docs/dhcp.xml b/Shorewall-docs/dhcp.xml index bb32bca75..a6a79b43b 100644 --- a/Shorewall-docs/dhcp.xml +++ b/Shorewall-docs/dhcp.xml @@ -15,13 +15,15 @@ - 2002-11-03 + 2004-01-10 2001 2002 + 2004 + Thomas M. Eastep @@ -35,6 +37,16 @@ + + For most operations, DHCP software interfaces to the Linux IP stack + at a level below Netfilter. Hence, Netfilter (and therefore Shorewall) + cannot be used effectively to police DHCP. The dhcp + interface option described in this article allows for Netfilter to stay + out of DHCP's way for those operations that can be controlled by + Netfilter and prevents unwanted logging of DHCP-related traffic by + Shorewall-generated Netfilter logging rules. + +
If you want to Run a DHCP Server on your firewall