Re: [SLUG] hosts.allow/deny by MAC instead of IP

From: steve szmidt (steve@szmidt.org)
Date: Wed Nov 17 2004 - 23:44:28 EST


On Wednesday 17 November 2004 02:47 pm, Mike Branda wrote:
> I've been googling for a bit and was wondering if anybody knows if you
> can use the /etc/hosts.allow & hosts.deny files by MAC address instead
> of network/netmask? I need to deny ssh from everyone but specific
> machines regardless of IP due to it being dynamic. I have it set up the
> IP way now but if the address get's re-assigned outside the current
> block I get screwed. I'd like to set it by the MAC of the originating
> machine if possible.
>
> thanks in advance.
>
> Mike Branda Jr.

I don't think so. A quick man hosts.allow reveals that it will support domain
names and ip addresses but not MAC addresses. However you can, using iptables
or shorewall.

-- 

Steve Szmidt

"They that would give up essential liberty for temporary safety deserve neither liberty nor safety." Benjamin Franklin ----------------------------------------------------------------------- This list is provided as an unmoderated internet service by Networked Knowledge Systems (NKS). Views and opinions expressed in messages posted are those of the author and do not necessarily reflect the official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 17:33:53 EDT