----- Original Message ----- From: "Holden Hao" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, March 19, 2003 3:43 PM Subject: Re: [plug] About Packet Filtering and Squid Proxy
> Am I right in saying to forgo MAC addresses since this can be created for example by ifconfig as pointed out before by Rick. Thus if somebody knows the MAC address of a card and he uses that with ifconfig then he can get thru your ACL. yes if you are under the hub environment... but if you are under the switch enviroment and implemented port security by allowing this mac address to this port and drop everything, mac spoofing is useless... fooler. _ Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph To leave: send "unsubscribe" in the body to [EMAIL PROTECTED] Fully Searchable Archives With Friendly Web Interface at http://marc.free.net.ph To subscribe to the Linux Newbies' List: send "subscribe" in the body to [EMAIL PROTECTED]
