On Wednesday 10 October 2007, Daevid Vincent wrote:
> Anyways, sometimes I have stupid neighbors who don't quite "get it"
> and will just blindly let their computers connect to my WAP. UGH!
> They sit on it for hours and days and generally piss me off.
>
> How can I boot someone off my network? I usually add them to my
> shorewall blacklist file, and then:

You run dhcp? Just exclude that MAC address from getting a lease.

No IP address = no route = problem solved

For a second level of teach-them-a-lessonness, iptables has a 'mac' 
extension. Use that to match the MAC address and DROP all patches in 
your outgoing firewall FORWARD chain

alan

-- 
Optimists say the glass is half full,
Pessimists say the glass is half empty,
Developers say wtf is the glass twice as big as it needs to be?

Alan McKinnon
alan at linuxholdings dot co dot za
+27 82, double three seven, one nine three five
-- 
[EMAIL PROTECTED] mailing list

Reply via email to