ARP filtering

Discussion in 'LnS English Forum' started by ablazhov, Jul 24, 2004.

Thread Status:
Not open for further replies.
  1. ablazhov

    ablazhov Registered Member

    Joined:
    Apr 21, 2004
    Posts:
    6
    Is there a way to do some more detailed ARP packet filtering with LnS?
    I'd like to hide my computer from everybody in the LAN. I want to block every incomming ARP packet which has opcode=1 and block every outgoing ARP packet which has opcode=2...

    I cannot find a way to do this detailed ARP packet filtering.

    Please help!

    P.S.
    I found that I can add such rules by using the RawRulesEditor plugin. BUT, i don't know what to enter in the raw rules to accommodate the needed functionality described above.
    So again: HELP!
     
    Last edited: Jul 24, 2004
  2. ablazhov

    ablazhov Registered Member

    Joined:
    Apr 21, 2004
    Posts:
    6
    OK, I managed to do this filtering by myself!
    But I am still looking for the Phant0m's Advanced rules pack.
    Is there anybody who can post here a link to this pack?
     
    Last edited: Jul 24, 2004
  3. nameless

    nameless Registered Member

    Joined:
    Feb 23, 2003
    Posts:
    1,184
    Would you mind filling the rest of us in on how you accomplished your goal? Maybe a screen shot?

    P.S. I can't help with Phant0m's rule set offhand.
     
  4. ablazhov

    ablazhov Registered Member

    Joined:
    Apr 21, 2004
    Posts:
    6
    Look at this thread:
    https://www.wilderssecurity.com/showthread.php?t=42831

    Download the rule-set and add the two rules near the bottom of the list - Broadcast ARP... and Gateway ARP...; activate these two rules and deactivate the built-in rule - ARP: Authorize all arp...
    So the task is done. Don't try to edit the imported rules with the built-in rule editor, because you can damage the filter. Use the RawRuleEditor plugin instead.
     
Thread Status:
Not open for further replies.