* advance filtering
@ 2004-01-12 19:49 Info
2004-01-12 20:06 ` John A. Sullivan III
0 siblings, 1 reply; 2+ messages in thread
From: Info @ 2004-01-12 19:49 UTC (permalink / raw)
To: netfilter
Hi list,
I have a lan with 32 PCs and a Redhat 7.3 (192.168.1.1) running IPTABLES to
route the lan into the internet. I am using a ASDL dymanic internet service
and RP-PPPOE. I would like to block the network from connecting to MSN and
AIM. At the same time, allow every machine to access to the mail server
outside of the lan. Most of these machines will not have access to surf the
internet. For example, 192.168.1.2 - 192.168.1.10 will have full access out
of the lan into the internet. 192.168.1.11 - 192.168.1.32 has only access to
the mail server.
Has anyone got a working script, a faq or even tutorial which i can read up
on?
Thanks and regards
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: advance filtering
2004-01-12 19:49 advance filtering Info
@ 2004-01-12 20:06 ` John A. Sullivan III
0 siblings, 0 replies; 2+ messages in thread
From: John A. Sullivan III @ 2004-01-12 20:06 UTC (permalink / raw)
To: Info; +Cc: netfilter
There is an excellent tutorial by Oskar Andreasson available on the
Netfilter web site. There is a slide show in the training section of
http://iscs.sourceforge.net. You can probably do this through a GUI
configuration tool such as fwbuilder (http://www.fwbuilder.org). When
ISCS is completed, you will have a very powerful way to configure Access
Control, VPN and Routing for very complex and frequently changing
environments. Good luck - John
On Mon, 2004-01-12 at 14:49, Info wrote:
> Hi list,
>
> I have a lan with 32 PCs and a Redhat 7.3 (192.168.1.1) running IPTABLES to
> route the lan into the internet. I am using a ASDL dymanic internet service
> and RP-PPPOE. I would like to block the network from connecting to MSN and
> AIM. At the same time, allow every machine to access to the mail server
> outside of the lan. Most of these machines will not have access to surf the
> internet. For example, 192.168.1.2 - 192.168.1.10 will have full access out
> of the lan into the internet. 192.168.1.11 - 192.168.1.32 has only access to
> the mail server.
>
> Has anyone got a working script, a faq or even tutorial which i can read up
> on?
>
>
> Thanks and regards
--
John A. Sullivan III
Chief Technology Officer
Nexus Management
+1 207-985-7880
john.sullivan@nexusmgmt.com
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2004-01-12 20:06 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-01-12 19:49 advance filtering Info
2004-01-12 20:06 ` John A. Sullivan III
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox