path: root/
diff options
authorEric Leblond <>2012-07-16 23:03:39 +0200
committerEric Leblond <>2013-01-05 10:55:08 +0100
commitb91d9a38b9c20cbc66243d188d229f800c57f723 (patch)
tree92c0facca2cd15661a5d529eeccb0acc8deb091a /
parentc70783d8dbbe1373989f72b413389d23892c1000 (diff)
nfct: implement src and dst filter
This patch implements two filtering options in NFCT input plugin. If 'accept_src_filter' is set to a network it will only catch the event where the source is that specific network. 'accept_dst_filter' does the same for the destination.
Diffstat (limited to '')
1 files changed, 4 insertions, 0 deletions
diff --git a/ b/
index 6aff802..fa1fbf2 100644
--- a/
+++ b/
@@ -125,6 +125,10 @@ plugin="@pkglibdir@/"
#netlink_resync_timeout=60 # seconds to wait to perform resynchronization
#pollinterval=10 # use poll-based logging instead of event-driven
+# If pollinterval is not set, NFCT plugin will work in event mode
+# In this case, you can use the following filters on events:
+#accept_src_filter=,1:2::/64 # source ip of connection must belong to these networks
+#accept_dst_filter= # destination ip of connection must belong to these networks