Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 22 Oct 2002 10:55:26 -0500 (CDT)
From:      Scott Pilz <tech@tznet.com>
To:        freebsd-questions@freebsd.org
Subject:   IPFW/NATD
Message-ID:  <20021022105018.S62012-100000@mail.tznet.com>

next in thread | raw e-mail | index | archive | help

	The answer to this is more than likely 'no'.

	But I'll try anyways.

Setup: NATD/IPFW

Say you have an IPFW rule to allow 10.0.0.2 through NATD - thus into the
internet - and everything else to be blocked.

Your machine (10.0.0.2) that is being firewalled by NATD/IPFW works fine.
Then someone else sets their machine up to 10.0.0.2, and now they can also
get out into the network (there will of course be an ip conflict).

My question is, for security, is there any way to use this type of block
based on MAC ID. Almost to bond the MAC ID to the IP Address so the only
computer that can use the IP address 10.0.0.2 is with MAC ID <whatever>?


Thanks,

Scott


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20021022105018.S62012-100000>