[rsbac] JAIL and outgoing tcp connections

Joachim Ring jring at web.de
Sun Nov 30 19:31:47 CET 2003


during the past few weeks i've been playing around with rsbac and as of
now the system starts to get usable again even with rsbac ;-)

i was in the process of jailing an apache when i remembered that i
wanted this as a reverse proxy and shure enough, all attempts to proxy a
request were killed with a CONNECT forbidden by JAIL...

i understand that this is as advertised in the docs but i was asking
myself wether i was overseeing some possibility to allow connections to
a few trusted hosts with the netrules (which i frankly haven't really 
grasped yet).

also other ideas (besides plain chroot, what it's now) are welcome.



