Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 26 Jun 2001 21:33:38 -0400
From:      James Housley <jim@thehousleys.net>
To:        Andrew Reid <andrew.reid@plug.cx>
Cc:        freebsd-isp@freebsd.org
Subject:   Re: Username-based Routing/Filtering
Message-ID:  <3B3937F2.BD942A74@thehousleys.net>
References:  <993602477.1681.11.camel@percible.alfred.cx>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a cryptographically signed message in MIME format.

--------------ms032279418B728DFCBA677129
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Andrew Reid wrote:
> 
> Hello All,
> 
> I'm a bit of a FreeBSD convert after using Linux for years, so I'm a bit
> unclear of the capabilities of FreeBSD in some circumstances.
> 
> A feature of Linux 2.4 is that you can route/firewall/filter based on
> the username.
> 
> For example, if I log in as 'andrew' to my machine, I get to go out to
> the wide-world via the Microwave link with no restrictions. If I log on
> as 'someotheruser' I'm shunted out a modem link.
> 
> My question:
> 
> Can FreeBSD route based on a username?
> Will IPFW/IPF filter based on username?
> 

man 8 ipfw

IPFW can do routing based on UID or GID.  What you do from there is up
to you, but it is able to be done.

Jim

-- 
/"\   ASCII Ribbon Campaign  .
\ / - NO HTML/RTF in e-mail  .
 X  - NO Word docs in e-mail .
/ \ -----------------------------------------------------------------
jeh@FreeBSD.org      http://www.FreeBSD.org     The Power to Serve
jim@TheHousleys.Net  http://www.TheHousleys.net
---------------------------------------------------------------------
Unix is very user-friendly.  It's just picky who its friends are.
--------------ms032279418B728DFCBA677129
Content-Type: application/x-pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
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--------------ms032279418B728DFCBA677129--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3B3937F2.BD942A74>