Interceptor like behaivior


I am trying to do an interceptor like box but for security protection rather than access. I am thinking for this kind of horsepower I will need to use a full linux box and not an OpenWRT (well maybe x86 OpenWRT).

I really want to have a transparent bridged network device. That blocks TCP and UDP traffic to specific ports.

Anyone know where I could find instructions to do that?


Google for transparent bridge or transparent proxy. I haven't got any links but that is what I was looking at when I was researching Interceptor.

Basically all you need to do is to put two NICs in the machine, bridge them together then use iptables to control the flow of traffic. You don't need to install daemonlogger as you can sniff/monitor the traffic directly on the bridge.

