Firewall restrictions after logging in?

Stefan Winter stefan.winter at restena.lu
Tue Nov 27 10:43:11 UTC 2007


Hi,

I'm trying to impose firewall restrictions on cients after they have 
successfully authenticated to Chilli, i.e. allow only certain ports to the 
outside world. 
I wonder if the rules have to refer to $INTIF or to tun0 and whether they 
belong to FORWARD or OUTPUT on the Chilli host. I played a bit with the 
various options, but didn't really get anywhere. Is there some quick advice 
available, or better yet, some documentation?
I'm talking of the latest ChilliSpot - couldn't migrate to CoovaChilli yet.

Thanks,

Stefan Winter

-- 
Stefan WINTER

Stiftung RESTENA - Réseau Téléinformatique de l'Education Nationale et de 
la Recherche
Ingenieur Forschung & Entwicklung

6, rue Richard Coudenhove-Kalergi
L-1359 Luxembourg
E-Mail: stefan.winter at restena.lu     Tel.:     +352 424409-1
http://www.restena.lu                Fax:      +352 422473
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 194 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.coova.org/pipermail/chilli/attachments/20071127/b3ed66f1/attachment.pgp>


More information about the Chilli mailing list