> If you will be maintaining the squid ACL manually anyway, forget the
> squid.conf ACL, and just go with the iptables filter/input rules.
> 
> And, MAC addresses are only used for ethernet media.  If your hosts are
> over the internet, identify them via IP addresses not mac addresses.  If
> your intended users are using dynamic IPs, then you have to enable squid
> proxy authentication para pag login na lang sila.

Am I right in saying to forgo MAC addresses since this can be created for example by 
ifconfig as pointed out before by Rick.  Thus if somebody knows the MAC address of a 
card and he uses that with ifconfig then he can get thru your ACL.

Holden
_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]

Fully Searchable Archives With Friendly Web Interface at http://marc.free.net.ph

To subscribe to the Linux Newbies' List: send "subscribe" in the body to [EMAIL 
PROTECTED]

Reply via email to