From mboxrd@z Thu Jan 1 00:00:00 1970 From: Jose Maria Lopez Subject: Re: filtering packets based on the pathname of the sending/receiving application Date: 30 Aug 2004 20:54:42 +0200 Sender: netfilter-bounces@lists.netfilter.org Message-ID: <1093887772.23659.51.camel@nostromo.bgsecm.com> References: <013a01c48b8e$77ff1840$7e306980@calli> Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Return-path: In-Reply-To: <013a01c48b8e$77ff1840$7e306980@calli> List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: text/plain; charset="utf-8" To: "netfilter@lists.netfilter.org" El jue, 26 de 08 de 2004 a las 19:02, Sonny (Sechang) Son escribió: > Hi, > > sorry if this has been answered already. > > Is there any way to block/allow traffic generated by or toward a spcific > application. I want to block/allow traffics based on the full pathname of > the application. > > thank you. Wouldn't it be easier to study the ports this application use and use them to generate your rules. I think what you want it's not possible, you can't discriminate traffic using the path or name of the executable, but I think you can do it with the user that runs the program, using a patch from patch-o-matic, I don't know if this can suit you. -- Jose Maria Lopez Hernandez Director Tecnico de bgSEC jkerouac@bgsec.com bgSEC Seguridad y Consultoria de Sistemas Informaticos http://www.bgsec.com ESPAÑA The only people for me are the mad ones -- the ones who are mad to live, mad to talk, mad to be saved, desirous of everything at the same time, the ones who never yawn or say a commonplace thing, but burn, burn, burn like fabulous yellow Roman candles. -- Jack Kerouac, "On the Road"