Re: [CentOS] restrict network access

2007-10-22 Thread Christopher Chan
umair shakil wrote: Salam, Squid actually Proxy will do the trick Nope. Not if they are installed on those PCs. Regards, Umair Shakil ETD On 10/19/07, *Arne Pelka* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Hi, I have two pc using centos 4, these machines need

Re: [CentOS] restrict network access

2007-10-22 Thread Arne Pelka
Squid actually Proxy will do the trick Nope. Not if they are installed on those PCs. Just block outgoing connections to all webservers but those that are allowed. iptables -A OUTPUT -p tcp --dport 80 -d allowedip -j ACCEPT iptables -A OUTPUT -p tcp --dport 80 -d centosmirror -j

Re: [CentOS] restrict network access

2007-10-21 Thread umair shakil
Salam, Squid actually Proxy will do the trick Regards, Umair Shakil ETD On 10/19/07, Arne Pelka [EMAIL PROTECTED] wrote: Hi, I have two pc using centos 4, these machines need only access to the (big, class b) local network. Because of security reasons the network access should be

Re: [CentOS] restrict network access

2007-10-20 Thread Arne Pelka
Lorenzo Quatrini schrieb: I would setup a box with a proxy (eg. squid) and grant full internet access only to that box. On the other boxes either remove the default route, or block on the router/firewall internet access. On the proxy you can easily configure proxies for other services too

Re: [CentOS] restrict network access

2007-10-19 Thread Lorenzo Quatrini
Arne Pelka ha scritto: Hi, I have two pc using centos 4, these machines need only access to the (big, class b) local network. Because of security reasons the network access should be restricted to this local network - mainly the users of these pc should not be able to access webpages outside