пт, 14 авг. 2020 г. в 23:03, Grant Edwards <grant.b.edwa...@gmail.com>:

> [For posterity's sake, with -A Output it's -o <interface> rather than
> -i <interface>]

Ah, you are right! I am sorry, my iptables rule with 'noinet' doesn't
include an interface, I added it when typing the message and looked at
my rules with an interface from the INPUT section.

> My original post also said I was trying to hide an
> interface, when all I really needed was to prevent sending of packets
> on that interface.

Yes, it seems to be enough. I found out that 'noinet' rule when I got
annoyed by an application (written by Windows programmers as well)
that was continuously checking updates at each launch... No inet - no
check :)

> I think this should work, but I need to rebuild my kernel with the
> iptables "owner" extension enabled:

Clear!

-- 
Best regards,
Alex

Reply via email to