From owner-freebsd-questions Tue May 25 4:54:48 1999 Delivered-To: freebsd-questions@freebsd.org Received: from volodya.prime.net.ua (volodya.prime.net.ua [195.64.229.17]) by hub.freebsd.org (Postfix) with ESMTP id 3733414D8E for ; Tue, 25 May 1999 04:54:43 -0700 (PDT) (envelope-from andyo@prime.net.ua) Received: from prime.net.ua (localhost [127.0.0.1]) by volodya.prime.net.ua (8.9.3/8.8.8) with ESMTP id CAA69347; Tue, 25 May 1999 02:58:47 +0300 (EEST) (envelope-from andyo@prime.net.ua) Message-ID: <3749E7B3.182C8A05@prime.net.ua> Date: Tue, 25 May 1999 02:58:45 +0300 From: "Andy V. Oleynik" Organization: M-Info X-Mailer: Mozilla 4.6 [en] (X11; I; FreeBSD 3.2-BETA i386) X-Accept-Language: ru, en MIME-Version: 1.0 To: Sergei Vyshenski Cc: freebsd-questions@FreeBSD.ORG Subject: Re: IP fixed to Ethernet address References: <3.0.5.32.19990525131548.007cac00@rsfq.npi.msu.su> <3.0.5.32.19990525140057.007c5df0@rsfq.npi.msu.su> Content-Type: text/plain; charset=koi8-r Content-Transfer-Encoding: 8bit Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG There is some thing we not discussed earlier: If there is working host on the net with defined privileges say to access to NFS. Another host that pretends to be the 1st will cause IP conflict on the net & couldnt to obtain needed privileges. It only can to use address of 1st if latter is down. If 2nd host will gain his IP from range of unused those it again couldnt obtain needed privileges cos of abcense of explicit definition of those to this IP. Isn't it? Sergei Vyshenski wrote: > Different IP addresses inside the local net have different > rights. Say relative to NFS. How I can prevent that one host > PRETENDS it is another host, with different IP address? > > You see, now root of any host can just change its own IP address, and > have all NETWORK servises meant to this different IP address... > > At 01:04 25.05.99 +0300, you wrote: > >Root of workstation can do everithing by definition. > >But if ur root users are'nt advanced U may quietly > >chflags schg /etc/* to avoid its changes. But I would > >let them login only as regular users. > >Sergei Vyshenski wrote: > > > >> Is it possible to fix IP addresses to Ethernet addresses > >> inside a local net? So, that root users of workstations within > >> the local net can no longer change their IP addresses without > >> permission of network admin? > >> > >> Thank you very much ahead of time. > >> > >> To Unsubscribe: send mail to majordomo@FreeBSD.org > >> with "unsubscribe freebsd-questions" in the body of the message > > > >-- > >WBW Andy V. Oleynik (When U work in virtual office > > U have good chance to obtain virtual money ö%-) > > > > > > > > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-questions" in the body of the message -- WBW Andy V. Oleynik (When U work in virtual office U have good chance to obtain virtual money ö%-) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message