From owner-freebsd-questions@FreeBSD.ORG Mon Jan 26 00:14:16 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id EA49116A4CE for ; Mon, 26 Jan 2004 00:14:16 -0800 (PST) Received: from office.un.kiev.ua (relay.un.kiev.ua [195.137.202.30]) by mx1.FreeBSD.org (Postfix) with ESMTP id 0B34543D31 for ; Mon, 26 Jan 2004 00:14:14 -0800 (PST) (envelope-from ask@un.kiev.ua) Received: from un4.un (un4.un [192.168.0.4]) by office.un.kiev.ua (8.12.9p2/8.11.1) with ESMTP id i0Q8DWTn061632; Mon, 26 Jan 2004 10:13:33 +0200 (EET) Date: Mon, 26 Jan 2004 10:14:03 +0200 From: Alexey Kuzmenko Organization: UN House in Ukraine X-Priority: 3 (Normal) Message-ID: <80491713566.20040126101403@un.kiev.ua> To: Lowell Gilbert In-Reply-To: <4465f1fk5u.fsf@be-well.ilk.org> References: <137240266074.20040123122339@un.kiev.ua> <4465f1fk5u.fsf@be-well.ilk.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit cc: freebsd-questions@freebsd.org Subject: Re[2]: ARP poisonong. LIVE_MAC X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Alexey Kuzmenko List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 26 Jan 2004 08:14:17 -0000 Hello Lowell, Saturday, January 24, 2004, 5:20:13 PM, you wrote: >> replies for restricted host causing these hosts (basically windows) not >> to work in the LAN. LG> What an incredibly ugly idea. Why it's ugly?. Imagine that You've built a LAN to provide this service to customers (each PC is a separate customer, service is LAN). But all LAN has no L3 switches to cut off some customer that didn't pay for the service. How do you plan to cut off customers in debts? >> I'm wandering if there is something like above but for FreeBSD. I need >> to disallow any host network activity from the server (FreeBSD 4.8) LG> Surely there's a better way to implement what you're actually trying LG> to do; like firewalling the server you don't want accessed. See above. I do not want to firewall some server! I have a sevice - LAN connection, and I want to cut off some users that have debts (There is a hardware solution - just unplug them from the switch, but I'm seeking for software solution) -- Alexey Kuzmenko CCNA System Administrator UN House in Ukraine