Solved

Iptables & Squid Rules - Workstations with Dynamic Ip Address

Posted on 2006-10-30
2
376 Views
Last Modified: 2008-03-17
Hi Experts...

One of my networks has a Windows 2003 server thats acts as a DHCP to the local network, and i administer a Linux BOX (Debian) with iptables and Squid. The internet access is restricted based on individual policies acording with the CEO.

My questions:

In Iptables and in Squid is possible to apply rules using only the MAC ADDRESS or the Machine Name ?

Any help will be very apreciate...

Regard´s

Tullio

0
Comment
Question by:tullioc
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 4

Accepted Solution

by:
NorCal2612 earned 500 total points
ID: 17839686
This is a decent article explaining how to create iptables rules that filter based on MAC addresses:

http://jaredquinn.info/it-related/technical/2006.02.05/iptables-mac-filter/

And here is an example for squid:

(1) To allow http_access for only one machine with MAC Address 00:08:c7:9f:34:41

To use MAC address in ACL rules. Configure with option -enable-arp-acl.

acl all src 0.0.0.0/0.0.0.0
acl pl800_arp arp 00:08:c7:9f:34:41
http_access allow pl800_arp
http_access deny all

Hope this helps.
0
 

Author Comment

by:tullioc
ID: 17915681
NorCal2612

Perfect, thanks a lot....
0

Featured Post

Enroll in May's Course of the Month

May’s Course of the Month is now available! Experts Exchange’s Premium Members and Team Accounts have access to a complimentary course each month as part of their membership—an extra way to increase training and boost professional development.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Best software based IDS? 5 134
RHEL version of ubuntus "TASKSEL" to install packages ? 2 844
Problem to command 8 103
(Open)LDAP V2.44  search proxy to AD (W2012R2) 37 255
​Being a Managed Services Provider (MSP) has presented you  with challenges in the past— and by meeting those challenges you’ve reaped the rewards of success.  In 2014, challenges and rewards remain; but as the Internet and business environment evol…
BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…
Finds all prime numbers in a range requested and places them in a public primes() array. I've demostrated a template size of 30 (2 * 3 * 5) but larger templates can be built such 210  (2 * 3 * 5 * 7) or 2310  (2 * 3 * 5 * 7 * 11). The larger templa…

740 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question