6 Replies Latest reply on Apr 19, 2016 8:19 PM by Sandy_Intel

    82599 hardware filter to only accept UDP4 traffic sent to 53 port

    mpolonio

      Hello,

       

      I tested hardware filters on my Ubuntu+82599 development environment and everything seemed to work great. I've further read Intel and ethtool documentation, but I've been unable to find a solution to my next question. I've got a DNS analysis tool and I would like to only accept UDP packets sent to/from 53 port (DNS request/responses) and drop everything else. In your opinion, is by any means possible to implement a hardware filter like this one (drop all non-UDP packets and not sent to 53 port) below:

       

      ethtool --config-ntuple eth4 flow-type !udp4 dst-port !53 action -1

       

      Thanks in advance and best regards,

      Manuel Polonio