From: Alexander Samad <alex@samad.com.au>
To: netfilter@lists.netfilter.org
Subject: Re: filtering packets based on the pathname of the sending/receiving application
Date: Tue, 31 Aug 2004 08:05:56 +1000 [thread overview]
Message-ID: <20040830220556.GR29072@samad.com.au> (raw)
In-Reply-To: <1093887772.23659.51.camel@nostromo.bgsecm.com>
[-- Attachment #1: Type: text/plain, Size: 1405 bytes --]
On Mon, Aug 30, 2004 at 08:54:42PM +0200, Jose Maria Lopez wrote:
> El jue, 26 de 08 de 2004 a las 19:02, Sonny (Sechang) Son escribi??:
> > Hi,
> >
> > sorry if this has been answered already.
> >
> > Is there any way to block/allow traffic generated by or toward a spcific
> > application. I want to block/allow traffics based on the full pathname of
> > the application.
> >
> > thank you.
The is a patch in patch o matic called owner, which lets you specify the
application and matches agains that.
>
> Wouldn't it be easier to study the ports this application use and use
> them to generate your rules. I think what you want it's not possible,
> you can't discriminate traffic using the path or name of the executable,
> but I think you can do it with the user that runs the program, using a
> patch from patch-o-matic, I don't know if this can suit you.
>
> --
> Jose Maria Lopez Hernandez
> Director Tecnico de bgSEC
> jkerouac@bgsec.com
> bgSEC Seguridad y Consultoria de Sistemas Informaticos
> http://www.bgsec.com
> ESPA??A
>
> The only people for me are the mad ones -- the ones who are mad to live,
> mad to talk, mad to be saved, desirous of everything at the same time,
> the ones who never yawn or say a commonplace thing, but burn, burn, burn
> like fabulous yellow Roman candles.
> -- Jack Kerouac, "On the Road"
>
>
>
[-- Attachment #2: Digital signature --]
[-- Type: application/pgp-signature, Size: 189 bytes --]
next prev parent reply other threads:[~2004-08-30 22:05 UTC|newest]
Thread overview: 4+ messages / expand[flat|nested] mbox.gz Atom feed top
2004-08-26 17:02 filtering packets based on the pathname of the sending/receiving application Sonny (Sechang) Son
2004-08-30 18:54 ` Jose Maria Lopez
2004-08-30 22:05 ` Alexander Samad [this message]
2004-08-31 19:52 ` Jose Maria Lopez
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20040830220556.GR29072@samad.com.au \
--to=alex@samad.com.au \
--cc=netfilter@lists.netfilter.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.