On Thu, Nov 29, 2001 at 06:11:55PM +0200, Vasil Kolev wrote:
> 
> 
> On Thu, 29 Nov 2001, George Danchev wrote:
> 
> > On Thursday 29 November 2001 17:31, you wrote:
> > > Искаш да кажеш, че MAC  адреса не може да се смени ли ???
> > >
> > > eth0      Link encap:Ethernet  HWaddr 00:11:22:33:44:55
> > >           inet addr:192.168.10.20  Bcast:192.168.10.255  Mask:255.255.255.0
> > >           UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
> > >           RX packets:4874265 errors:334435 dropped:11 overruns:0 frame:0
> > >           TX packets:503073 errors:7 dropped:0 overruns:7 carrier:0
> > >           collisions:18676 txqueuelen:100
> > >           Interrupt:10 Base address:0xd400
> > >
> > > eth0:1    Link encap:Ethernet  HWaddr 00:11:22:33:44:55
> > >           inet addr:10.0.0.20  Bcast:10.255.255.255  Mask:255.255.255.0
> > >           UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
> > >           Interrupt:10 Base address:0xd400
> > >
> > > Явно не си попадал на злонамерени хора..
> > >
> > > На Четвъртък 29 Ноември 2001 17:39, вие написахте:
> > > > shto puk ne?
> > blah, za smqnata na MAC-a bqh 4uval samo i si mislih 4e ponastoqstem e
> > legenda vse oste, vinata e na proizvoditelite na NIC , vsustnost ne mi e qsno
> > kakvo pe4elqt ot tova ..... No vse pak kolko sa userite kojto znaqt kak da se
> > zadobiqt i setnat  privilegirovani IP-MAC ot arp table-a na dadeniq
> > gateway/router.
> > Drugoto za koeto se setam e da prekarash   vsi4ki prez proxy-to za
> > authentification, if fail -> no service.
> > --
> 
> Purvo, tova za smqnata na mac adresa se e nalagolo otdavna, za nqkoi
> protocoli kato decnet, koito iziskvat vsichki eth interfaces na mashinata
> da imat eidn i sushti mac adress( za chii *** - dqvol znae ). Inache,
> naj-secure nachina e s pppoe , dazhe Ivajlo Toshev beshe napisal takava
> programka ( LANUTA ) , koqto dosta dobre se opravqshe i s trafic
> accounting-a.
> 
> Ili 3tiq variant e da fixirate po krajnite ustrojstva ( switchove/hubove)
> pozvolenite mac adresi ot koito mozhe da idva info na nqkoj port... Obache
> e baq skupo reshenie.
> 

iptables/netfilter ima vyzmozhnost za filtrirane po MAC address, tyi che
i taa syshto stava
-- 
_________________________________________________________
Luben Karavelov                    [phone] +359 2 9877088
Network Administrator                     [ICQ#] 34741625
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Attachment: msg07847/pgp00000.pgp
Description: PGP signature

Reply via email to