[rsbac] Re: rsbac Digest, Vol 16, Issue 14

Michał Purzyński albeiro at polsl.gliwice.pl
Tue Apr 20 16:25:04 CEST 2004


rsbac-request at rsbac.org wrote:

>Send rsbac mailing list submissions to
>	rsbac at rsbac.org
>
>To subscribe or unsubscribe via the World Wide Web, visit
>	http://rsbac.dyndns.org/mailman/listinfo/rsbac
>or, via email, send a message with subject or body 'help' to
>	rsbac-request at rsbac.org
>
>You can reach the person managing the list at
>	rsbac-owner at rsbac.org
>
>When replying, please edit your Subject line so it is more specific
>than "Re: Contents of rsbac digest..."
>
>
>Today's Topics:
>
>   1. RE: How to limit network access (Markus Weber)
>   2. Re: How to limit network access (Amon Ott)
>   3. bugreport: newbie's observations (Jan Minar)
>
>
>----------------------------------------------------------------------
>
>Message: 1
>Date: Mon, 19 Apr 2004 07:18:18 -0500
>From: "Markus Weber" <rsbac at nather.com>
>Subject: RE: [rsbac] How to limit network access
>To: "RSBAC Discussion and Announcements" <rsbac at rsbac.org>
>Message-ID: <PMEAIMBALAHKECEIMJFGCEMGMOAA.rsbac at nather.com>
>Content-Type: text/plain;	charset="ISO-8859-15"
>
>  
>
>>From: Thomas Mueller [mailto:news-exp-jun04 at tmueller.com]
>>Subject: [rsbac] How to limit network access
>>...
>>Whatever tcp6 is. This is a default Debian Sarge installation with kernel
>>2.6.4 and RSBAC 1.2.3pre4.
>>    
>>
>
>TCP6 is IPV6. At first glance, it looks like you restrict access for IPV4,
>but not for IPV6. Unless you do need IPV6, you should probably remove it
>from the kernel configuration.
>
>Markus
>---
>Outgoing mail is certified Virus Free.
>Checked by AVG anti-virus system (http://www.grisoft.com).
>Version: 6.0.650 / Virus Database: 416 - Release Date: 4/4/2004
>
>
>
>------------------------------
>
>Message: 2
>Date: Mon, 19 Apr 2004 19:40:14 +0200
>From: Amon Ott <ao at rsbac.org>
>Subject: Re: [rsbac] How to limit network access
>To: RSBAC Discussion and Announcements <rsbac at rsbac.org>
>Message-ID: <200404191940.15018.ao at rsbac.org>
>Content-Type: text/plain;  charset="iso-8859-15"
>
>On Montag, 19. April 2004 14:18, Markus Weber wrote:
>  
>
>>>From: Thomas Mueller [mailto:news-exp-jun04 at tmueller.com]
>>>Subject: [rsbac] How to limit network access
>>>...
>>>Whatever tcp6 is. This is a default Debian Sarge installation with 
>>>      
>>>
>kernel
>  
>
>>>2.6.4 and RSBAC 1.2.3pre4.
>>>      
>>>
>>TCP6 is IPV6. At first glance, it looks like you restrict access for 
>>    
>>
>IPV4,
>  
>
>>but not for IPV6. Unless you do need IPV6, you should probably remove it
>>from the kernel configuration.
>>    
>>
>
>IPv6 / TCP6 ports are not yet supported, because noone ever asked for it. 
>Unless you really need IPv6, just turn it off in your kernel config.
>
>Amon.
>  
>
is it much work / extra tricky to implement it ?
or could i do it in few hours ;) ?

Albeiro


More information about the rsbac mailing list