All of lore.kernel.org
 help / color / mirror / Atom feed
From: Alexander Samad <alex@samad.com.au>
To: netfilter@lists.netfilter.org
Subject: Re: filtering packets based on the pathname of the sending/receiving application
Date: Tue, 31 Aug 2004 08:05:56 +1000	[thread overview]
Message-ID: <20040830220556.GR29072@samad.com.au> (raw)
In-Reply-To: <1093887772.23659.51.camel@nostromo.bgsecm.com>

[-- Attachment #1: Type: text/plain, Size: 1405 bytes --]

On Mon, Aug 30, 2004 at 08:54:42PM +0200, Jose Maria Lopez wrote:
> El jue, 26 de 08 de 2004 a las 19:02, Sonny (Sechang) Son escribi??:
> > Hi,
> > 
> > sorry if this has been answered already.
> > 
> > Is there any way to block/allow traffic generated by or toward a spcific
> > application. I want to block/allow traffics based on the full pathname of
> > the application.
> > 
> > thank you.

The is a patch in patch o matic called owner, which lets you specify the
application and matches agains that.


> 
> Wouldn't it be easier to study the ports this application use and use
> them to generate your rules. I think what you want it's not possible,
> you can't discriminate traffic using the path or name of the executable,
> but I think you can do it with the user that runs the program, using a
> patch from patch-o-matic, I don't know if this can suit you.
> 
> -- 
> Jose Maria Lopez Hernandez
> Director Tecnico de bgSEC
> jkerouac@bgsec.com
> bgSEC Seguridad y Consultoria de Sistemas Informaticos
> http://www.bgsec.com
> ESPA??A
> 
> The only people for me are the mad ones -- the ones who are mad to live,
> mad to talk, mad to be saved, desirous of everything at the same time,
> the ones who never yawn or say a commonplace thing, but burn, burn, burn
> like fabulous yellow Roman candles.
>                 -- Jack Kerouac, "On the Road"
> 
> 
> 

[-- Attachment #2: Digital signature --]
[-- Type: application/pgp-signature, Size: 189 bytes --]

  reply	other threads:[~2004-08-30 22:05 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-08-26 17:02 filtering packets based on the pathname of the sending/receiving application Sonny (Sechang) Son
2004-08-30 18:54 ` Jose Maria Lopez
2004-08-30 22:05   ` Alexander Samad [this message]
2004-08-31 19:52     ` Jose Maria Lopez

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20040830220556.GR29072@samad.com.au \
    --to=alex@samad.com.au \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.