> If you will be maintaining the squid ACL manually anyway, forget the > squid.conf ACL, and just go with the iptables filter/input rules. > > And, MAC addresses are only used for ethernet media. If your hosts are > over the internet, identify them via IP addresses not mac addresses. If > your intended users are using dynamic IPs, then you have to enable squid > proxy authentication para pag login na lang sila.
Am I right in saying to forgo MAC addresses since this can be created for example by ifconfig as pointed out before by Rick. Thus if somebody knows the MAC address of a card and he uses that with ifconfig then he can get thru your ACL. Holden _ Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph To leave: send "unsubscribe" in the body to [EMAIL PROTECTED] Fully Searchable Archives With Friendly Web Interface at http://marc.free.net.ph To subscribe to the Linux Newbies' List: send "subscribe" in the body to [EMAIL PROTECTED]
