* Internet usage policy
[not found] <mailman.0.1115718084.11687.netfilter@lists.netfilter.org>
@ 2005-05-10 9:40 ` Ayobami Oladejo
2005-05-10 9:55 ` Seferovic Edvin
` (2 more replies)
0 siblings, 3 replies; 6+ messages in thread
From: Ayobami Oladejo @ 2005-05-10 9:40 UTC (permalink / raw)
To: netfilter
Hello,
I am still a newbie in Linux. I have a challenge. Curently in my
organisation, we want to run a policy not to allow some workstations to
access the Internet until 6 p.m of each day. We currently use Squid on a
RedHat Linux system.
How can I do this.
Thank you.
Ayo
_________________________________________________________________
Don't just search. Find. Check out the new MSN Search!
http://search.msn.com/
^ permalink raw reply [flat|nested] 6+ messages in thread
* RE: Internet usage policy
2005-05-10 9:40 ` Internet usage policy Ayobami Oladejo
@ 2005-05-10 9:55 ` Seferovic Edvin
2005-05-10 10:31 ` hareram
2005-05-10 13:32 ` Jason Opperisano
2 siblings, 0 replies; 6+ messages in thread
From: Seferovic Edvin @ 2005-05-10 9:55 UTC (permalink / raw)
To: netfilter
SquidGuard
Regards,
Edvin Seferovic
-----Original Message-----
From: netfilter-bounces@lists.netfilter.org
[mailto:netfilter-bounces@lists.netfilter.org] On Behalf Of Ayobami Oladejo
Sent: Dienstag, 10. Mai 2005 11:41
To: netfilter@lists.netfilter.org
Subject: Internet usage policy
Hello,
I am still a newbie in Linux. I have a challenge. Curently in my
organisation, we want to run a policy not to allow some workstations to
access the Internet until 6 p.m of each day. We currently use Squid on a
RedHat Linux system.
How can I do this.
Thank you.
Ayo
_________________________________________________________________
Don't just search. Find. Check out the new MSN Search!
http://search.msn.com/
^ permalink raw reply [flat|nested] 6+ messages in thread
* Re: Internet usage policy
2005-05-10 9:40 ` Internet usage policy Ayobami Oladejo
2005-05-10 9:55 ` Seferovic Edvin
@ 2005-05-10 10:31 ` hareram
2005-05-10 13:32 ` Jason Opperisano
2 siblings, 0 replies; 6+ messages in thread
From: hareram @ 2005-05-10 10:31 UTC (permalink / raw)
To: Ayobami Oladejo, netfilter
check this link
may help you
http://www.netfilter.org/patch-o-matic/pom-base.html#pom-base-time
hare
----- Original Message -----
From: "Ayobami Oladejo" <ayooladejo@hotmail.com>
To: <netfilter@lists.netfilter.org>
Sent: Tuesday, May 10, 2005 3:10 PM
Subject: Internet usage policy
>
> Hello,
>
> I am still a newbie in Linux. I have a challenge. Curently in my
> organisation, we want to run a policy not to allow some workstations to
> access the Internet until 6 p.m of each day. We currently use Squid on a
> RedHat Linux system.
> How can I do this.
>
> Thank you.
>
> Ayo
>
> _________________________________________________________________
> Don't just search. Find. Check out the new MSN Search!
> http://search.msn.com/
>
>
>
>
^ permalink raw reply [flat|nested] 6+ messages in thread
* Re: Internet usage policy
2005-05-10 9:40 ` Internet usage policy Ayobami Oladejo
2005-05-10 9:55 ` Seferovic Edvin
2005-05-10 10:31 ` hareram
@ 2005-05-10 13:32 ` Jason Opperisano
2005-12-06 5:58 ` Best Linux Intrusion Detection System elg3ne
2 siblings, 1 reply; 6+ messages in thread
From: Jason Opperisano @ 2005-05-10 13:32 UTC (permalink / raw)
To: netfilter
On Tue, May 10, 2005 at 09:40:55AM +0000, Ayobami Oladejo wrote:
>
> Hello,
>
> I am still a newbie in Linux. I have a challenge. Curently in my
> organisation, we want to run a policy not to allow some workstations to
> access the Internet until 6 p.m of each day. We currently use Squid on a
> RedHat Linux system.
> How can I do this.
squid supports time-based ACL's:
http://squid.visolve.com/squid/squid24s1/access_controls.htm
-j
PS - squid has its own list:
http://www.squid-cache.org/mailing-lists.html
--
"Lois: So he just left without saying anything?
Peter: All I asked him to do was buy some peanuts and cracker jacks.
Brian: I don't care if he ever gets back. I wasn't being cute. I really
hope he's dead."
--Family Guy
^ permalink raw reply [flat|nested] 6+ messages in thread
* Best Linux Intrusion Detection System
2005-05-10 13:32 ` Jason Opperisano
@ 2005-12-06 5:58 ` elg3ne
0 siblings, 0 replies; 6+ messages in thread
From: elg3ne @ 2005-12-06 5:58 UTC (permalink / raw)
To: netfilter
Hi guys, I know this is a off topic but since Iptables is a security tool, I
will ask this question with regards also on security.
Here it goes.
1. what is the most commonly used LIDS system?
2. what is the best LIDS?
3. what is the most sophisticated LIDS?
4. what is the most easiest to setup?
5. what LIDS can you suggest on CentOS?
thanks
^ permalink raw reply [flat|nested] 6+ messages in thread
* RE: Best Linux Intrusion Detection System
@ 2005-12-06 13:38 Derick Anderson
0 siblings, 0 replies; 6+ messages in thread
From: Derick Anderson @ 2005-12-06 13:38 UTC (permalink / raw)
To: elg3ne, netfilter
> -----Original Message-----
> From: netfilter-bounces@lists.netfilter.org
> [mailto:netfilter-bounces@lists.netfilter.org] On Behalf Of
> elg3ne@dap.edu.ph
> Sent: Tuesday, December 06, 2005 12:59 AM
> To: netfilter@lists.netfilter.org
> Subject: Best Linux Intrusion Detection System
>
> Hi guys, I know this is a off topic but since Iptables is a
> security tool, I will ask this question with regards also on security.
>
> Here it goes.
> 1. what is the most commonly used LIDS system?
> 2. what is the best LIDS?
> 3. what is the most sophisticated LIDS?
> 4. what is the most easiest to setup?
> 5. what LIDS can you suggest on CentOS?
>
> thanks
The Focus-IDS group (www.securityfocus.com) is a better place for such
questions. However since I replied:
1. Probably Snort (www.snort.org) but I'm not positive. Snort is a NIDS,
of course, so if you are looking for HIDS then I couldn't tell you
(Tripwire maybe).
2. Depends on what you want. Snort is an excellent NIDS, once you
understand how to use it and turn off some rules which produce tons of
false positives.
3. Sophisticated? Dresses better, more feature bloat, slicker interface?
4. I'd spend the time understanding what's going on before worrying
about how easy an IDS is to set up.
5. Don't use it, so can't.
Derick Anderson
^ permalink raw reply [flat|nested] 6+ messages in thread
end of thread, other threads:[~2005-12-06 13:38 UTC | newest]
Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
[not found] <mailman.0.1115718084.11687.netfilter@lists.netfilter.org>
2005-05-10 9:40 ` Internet usage policy Ayobami Oladejo
2005-05-10 9:55 ` Seferovic Edvin
2005-05-10 10:31 ` hareram
2005-05-10 13:32 ` Jason Opperisano
2005-12-06 5:58 ` Best Linux Intrusion Detection System elg3ne
2005-12-06 13:38 Derick Anderson
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox