Re: [SLUG] hosts.allow/deny by MAC instead of IP

From: Vijay V. Swami (vswami@cise.ufl.edu)
Date: Wed Nov 17 2004 - 23:42:36 EST


Unfortunatly, tcpwrappers has no knowledge of MAC addresses, it is
strictly a hostname filtering system (due to it being at the
application level). However, you can use iptables with the mac address
module to filter it at that level.

/vijay

On Wed, 17 Nov 2004, Mike Branda wrote:

> I've been googling for a bit and was wondering if anybody knows if you
> can use the /etc/hosts.allow & hosts.deny files by MAC address instead
> of network/netmask? I need to deny ssh from everyone but specific
> machines regardless of IP due to it being dynamic. I have it set up the
> IP way now but if the address get's re-assigned outside the current
> block I get screwed. I'd like to set it by the MAC of the originating
> machine if possible.
>
> thanks in advance.
>
> Mike Branda Jr.

-----------------------------------------------------------------------
This list is provided as an unmoderated internet service by Networked
Knowledge Systems (NKS). Views and opinions expressed in messages
posted are those of the author and do not necessarily reflect the
official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 17:33:28 EDT