Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 30 Sep 2007 02:22:42 +0200
From:      Sten Daniel Soersdal <netslists@gmail.com>
To:        Agus <agus.262@gmail.com>
Cc:        freebsd-questions <freebsd-questions@freebsd.org>
Subject:   Re: Deny access from localhost to internet.....
Message-ID:  <46FEEC52.1050705@gmail.com>
In-Reply-To: <fda61bb50709281051j4953c79bi295138355edc9ad0@mail.gmail.com>
References:  <fda61bb50709281051j4953c79bi295138355edc9ad0@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Agus wrote:
> Hi guys,
> 
> How are you today?
> The question is this..I want to restrict external access, that is from my
> BSD to the internet, to some groups of users. Other groups i want to access
> internet normally. I dont want this group of users to be able to establish
> connections to the internet but yes to the internal systems on the LAN...
> 
> Is this possible without hacking the kernel?
> 
> Thanks and salutes for all
> 

You want to restrict internet, but not LAN, access for certain users 
logged into your BSD box?

man ipfw	( look for "uid" and "gid" )
man pf		( look for "user" and "group" )



-- 
Sten Daniel Soersdal



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?46FEEC52.1050705>