Linux Netfilter discussions
 help / color / mirror / Atom feed
* Internet usage policy
       [not found] <mailman.0.1115718084.11687.netfilter@lists.netfilter.org>
@ 2005-05-10  9:40 ` Ayobami Oladejo
  2005-05-10  9:55   ` Seferovic Edvin
                     ` (2 more replies)
  0 siblings, 3 replies; 6+ messages in thread
From: Ayobami Oladejo @ 2005-05-10  9:40 UTC (permalink / raw)
  To: netfilter


Hello,

I am still a newbie in Linux. I have a challenge. Curently in my 
organisation, we want to run a policy not to allow some workstations to 
access the Internet until 6 p.m of each day. We currently use Squid on a 
RedHat Linux system.
How can I do this.

Thank you.

Ayo

_________________________________________________________________
Don't just search. Find. Check out the new MSN Search! 
http://search.msn.com/



^ permalink raw reply	[flat|nested] 6+ messages in thread

* RE: Internet usage policy
  2005-05-10  9:40 ` Internet usage policy Ayobami Oladejo
@ 2005-05-10  9:55   ` Seferovic Edvin
  2005-05-10 10:31   ` hareram
  2005-05-10 13:32   ` Jason Opperisano
  2 siblings, 0 replies; 6+ messages in thread
From: Seferovic Edvin @ 2005-05-10  9:55 UTC (permalink / raw)
  To: netfilter

SquidGuard

Regards,

Edvin Seferovic

-----Original Message-----
From: netfilter-bounces@lists.netfilter.org
[mailto:netfilter-bounces@lists.netfilter.org] On Behalf Of Ayobami Oladejo
Sent: Dienstag, 10. Mai 2005 11:41
To: netfilter@lists.netfilter.org
Subject: Internet usage policy


Hello,

I am still a newbie in Linux. I have a challenge. Curently in my 
organisation, we want to run a policy not to allow some workstations to 
access the Internet until 6 p.m of each day. We currently use Squid on a 
RedHat Linux system.
How can I do this.

Thank you.

Ayo

_________________________________________________________________
Don't just search. Find. Check out the new MSN Search! 
http://search.msn.com/





^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: Internet usage policy
  2005-05-10  9:40 ` Internet usage policy Ayobami Oladejo
  2005-05-10  9:55   ` Seferovic Edvin
@ 2005-05-10 10:31   ` hareram
  2005-05-10 13:32   ` Jason Opperisano
  2 siblings, 0 replies; 6+ messages in thread
From: hareram @ 2005-05-10 10:31 UTC (permalink / raw)
  To: Ayobami Oladejo, netfilter

check this link
may help you

http://www.netfilter.org/patch-o-matic/pom-base.html#pom-base-time

hare
----- Original Message ----- 
From: "Ayobami Oladejo" <ayooladejo@hotmail.com>
To: <netfilter@lists.netfilter.org>
Sent: Tuesday, May 10, 2005 3:10 PM
Subject: Internet usage policy


> 
> Hello,
> 
> I am still a newbie in Linux. I have a challenge. Curently in my 
> organisation, we want to run a policy not to allow some workstations to 
> access the Internet until 6 p.m of each day. We currently use Squid on a 
> RedHat Linux system.
> How can I do this.
> 
> Thank you.
> 
> Ayo
> 
> _________________________________________________________________
> Don't just search. Find. Check out the new MSN Search! 
> http://search.msn.com/
> 
> 
> 
>



^ permalink raw reply	[flat|nested] 6+ messages in thread

* Re: Internet usage policy
  2005-05-10  9:40 ` Internet usage policy Ayobami Oladejo
  2005-05-10  9:55   ` Seferovic Edvin
  2005-05-10 10:31   ` hareram
@ 2005-05-10 13:32   ` Jason Opperisano
  2005-12-06  5:58     ` Best Linux Intrusion Detection System elg3ne
  2 siblings, 1 reply; 6+ messages in thread
From: Jason Opperisano @ 2005-05-10 13:32 UTC (permalink / raw)
  To: netfilter

On Tue, May 10, 2005 at 09:40:55AM +0000, Ayobami Oladejo wrote:
> 
> Hello,
> 
> I am still a newbie in Linux. I have a challenge. Curently in my 
> organisation, we want to run a policy not to allow some workstations to 
> access the Internet until 6 p.m of each day. We currently use Squid on a 
> RedHat Linux system.
> How can I do this.

squid supports time-based ACL's:

  http://squid.visolve.com/squid/squid24s1/access_controls.htm

-j

PS - squid has its own list:
     http://www.squid-cache.org/mailing-lists.html

--
"Lois: So he just left without saying anything?
 Peter: All I asked him to do was buy some peanuts and cracker jacks.
 Brian: I don't care if he ever gets back. I wasn't being cute. I really
 hope he's dead."
        --Family Guy


^ permalink raw reply	[flat|nested] 6+ messages in thread

* Best Linux Intrusion Detection System
  2005-05-10 13:32   ` Jason Opperisano
@ 2005-12-06  5:58     ` elg3ne
  0 siblings, 0 replies; 6+ messages in thread
From: elg3ne @ 2005-12-06  5:58 UTC (permalink / raw)
  To: netfilter

Hi guys, I know this is a off topic but since Iptables is a security tool, I
will ask this question with regards also on security.

Here it goes.
1. what is the most commonly used LIDS system?
2. what is the best LIDS?
3. what is the most sophisticated LIDS?
4. what is the most easiest to setup?
5. what LIDS can you suggest on CentOS?

thanks



^ permalink raw reply	[flat|nested] 6+ messages in thread

* RE: Best Linux Intrusion Detection System
@ 2005-12-06 13:38 Derick Anderson
  0 siblings, 0 replies; 6+ messages in thread
From: Derick Anderson @ 2005-12-06 13:38 UTC (permalink / raw)
  To: elg3ne, netfilter



> -----Original Message-----
> From: netfilter-bounces@lists.netfilter.org 
> [mailto:netfilter-bounces@lists.netfilter.org] On Behalf Of 
> elg3ne@dap.edu.ph
> Sent: Tuesday, December 06, 2005 12:59 AM
> To: netfilter@lists.netfilter.org
> Subject: Best Linux Intrusion Detection System
> 
> Hi guys, I know this is a off topic but since Iptables is a 
> security tool, I will ask this question with regards also on security.
> 
> Here it goes.
> 1. what is the most commonly used LIDS system?
> 2. what is the best LIDS?
> 3. what is the most sophisticated LIDS?
> 4. what is the most easiest to setup?
> 5. what LIDS can you suggest on CentOS?
> 
> thanks

The Focus-IDS group (www.securityfocus.com) is a better place for such
questions. However since I replied:

1. Probably Snort (www.snort.org) but I'm not positive. Snort is a NIDS,
of course, so if you are looking for HIDS then I couldn't tell you
(Tripwire maybe).
2. Depends on what you want. Snort is an excellent NIDS, once you
understand how to use it and turn off some rules which produce tons of
false positives.
3. Sophisticated? Dresses better, more feature bloat, slicker interface?
4. I'd spend the time understanding what's going on before worrying
about how easy an IDS is to set up.
5. Don't use it, so can't.

Derick Anderson


^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2005-12-06 13:38 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
     [not found] <mailman.0.1115718084.11687.netfilter@lists.netfilter.org>
2005-05-10  9:40 ` Internet usage policy Ayobami Oladejo
2005-05-10  9:55   ` Seferovic Edvin
2005-05-10 10:31   ` hareram
2005-05-10 13:32   ` Jason Opperisano
2005-12-06  5:58     ` Best Linux Intrusion Detection System elg3ne
2005-12-06 13:38 Derick Anderson

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox