[Server-devel] server ecurity

Martin Langhoff martin.langhoff at gmail.com
Mon Sep 28 03:29:28 EDT 2009


2009/9/22 Jerry Vonau <jvonau at shaw.ca>:
> No dhcp tricks, using iptables's packet marking, you tag the traffic
> from the mac address/ip combo, directing the packet flow in to some new
> tables where the rules are predefined.

After a good week away, I am a changed man :-)

The behaviour of NoCat is what I had -- roughly -- imagined we'd have
to do. Excellent. And I assume it works reasonably well? No gotchas or
big issues with the approach?

Anyone in the list used NoCat in production?



m
-- 
 martin.langhoff at gmail.com
 martin at laptop.org -- School Server Architect
 - ask interesting questions
 - don't get distracted with shiny stuff  - working code first
 - http://wiki.laptop.org/go/User:Martinlanghoff


More information about the Server-devel mailing list