Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 10 Jul 2019 18:49:43 +0530
From:      Shivank Garg <shivankgarg98@gmail.com>
To:        soc-status@freebsd.org, "Bjoern A. Zeeb" <bz+soc@freebsd.org>
Subject:   [GSoC'19 Weekly Update] MAC policy on IP addresses in Jail
Message-ID:  <CAOVCmzFqsfAQADu9hTz35_2sAur74R5wMR8yvvw6R4n4qv13xw@mail.gmail.com>

next in thread | raw e-mail | index | archive | help
Hi everyone!

This project is aimed at developing a loadable MAC module with the "The
TrustedBSD MAC Framework" to limit the set of IP addresses a VNET-enabled
Jail can choose from.

This week I made the following progress-
* Added checks for IPv4 and IPv6 address to allow/deny IP address
* added checks for the interface to allow/deny IP address.

Do Check this project on
Github:
https://github.com/shivankgarg98/freebsd/tree/shivank_MACPolicyIPAddressJail/sys/security/mac_ipacl
FreeBSD wiki:
https://wiki.freebsd.org/SummerOfCode2019Projects/MACPolicyIPAddressJail

Please feel free to share your ideas and feedback on this project.

Regards,
Shivank Garg



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAOVCmzFqsfAQADu9hTz35_2sAur74R5wMR8yvvw6R4n4qv13xw>