Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 26 Jun 2001 21:33:38 -0400
From:      James Housley <jim@thehousleys.net>
To:        Andrew Reid <andrew.reid@plug.cx>
Cc:        freebsd-isp@freebsd.org
Subject:   Re: Username-based Routing/Filtering
Message-ID:  <3B3937F2.BD942A74@thehousleys.net>
References:  <993602477.1681.11.camel@percible.alfred.cx>

index | next in thread | previous in thread | raw e-mail

[-- Attachment #1 --]
Andrew Reid wrote:
> 
> Hello All,
> 
> I'm a bit of a FreeBSD convert after using Linux for years, so I'm a bit
> unclear of the capabilities of FreeBSD in some circumstances.
> 
> A feature of Linux 2.4 is that you can route/firewall/filter based on
> the username.
> 
> For example, if I log in as 'andrew' to my machine, I get to go out to
> the wide-world via the Microwave link with no restrictions. If I log on
> as 'someotheruser' I'm shunted out a modem link.
> 
> My question:
> 
> Can FreeBSD route based on a username?
> Will IPFW/IPF filter based on username?
> 

man 8 ipfw

IPFW can do routing based on UID or GID.  What you do from there is up
to you, but it is able to be done.

Jim

-- 
/"\   ASCII Ribbon Campaign  .
\ / - NO HTML/RTF in e-mail  .
 X  - NO Word docs in e-mail .
/ \ -----------------------------------------------------------------
jeh@FreeBSD.org      http://www.FreeBSD.org     The Power to Serve
jim@TheHousleys.Net  http://www.TheHousleys.net
---------------------------------------------------------------------
Unix is very user-friendly.  It's just picky who its friends are.
[-- Attachment #2 --]
0	*H
010	+0	*H
00%L"0
	*H
010	UZA10UWestern Cape10UDurbanville10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 1999.9.160
000921154029Z
010921154029Z0^10UHousley10U*James10U
James Housley1"0 	*H
	jim@thehousleys.net00
	*H
0+hvȦi;sb&[ŔGF[0㩌O#jdFoCs:X0IZzm&,' 'L#˦xA0c<BA<"3mk 
Q0O0U0jim@thehousleys.net0U00U#0`fUXFa#Ì0
	*H
Ue|̕^.3.on%j{-37vDkx^o9hsIJTVjcG.j߄@~ІU!)ȷKE+QKfnɵB#庝o00}0
	*H
010	UZA10UWestern Cape10U	Cape Town10U
Thawte Consulting1(0&UCertification Services Division1$0"UThawte Personal Freemail CA1+0)	*H
	personal-freemail@thawte.com0
990916140140Z
010915140140Z010	UZA10UWestern Cape10UDurbanville10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 1999.9.1600
	*H
0iZz]!#rLK~r$BRW{azr98e^eyvL>hput,O	1ArƦ]D.Mօ>lx~@эWs0FO7050U00U#0rIs4Uvr~wƲ0
	*H
kY1rr`HU{gapm¥7؝(V\uoƑlfq|ko!6-	-mƃRt\~
orzg,ksnΝc)	~U100010	UZA10UWestern Cape10UDurbanville10
U
Thawte10UCertificate Services1(0&UPersonal Freemail RSA 1999.9.16L"0	+0	*H
	1	*H
0	*H
	1
010627013341Z0#	*H
	1 ~!1	|`0R	*H
	1E0C0
*H
0*H
0+0
*H
@0
*H
(0
	*H
ܥdD%愉xŝ3vN$CD+Ѫַ{L[;?*ЕaT/6}֫1f`RdnfNnV	W3]In+^oYq
help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3B3937F2.BD942A74>