Re: [CentOS] restrict network access

2007-10-22 Thread Arne Pelka
>> Squid actually Proxy will do the trick > > Nope. Not if they are installed on those PCs. > > > Just block outgoing connections to all webservers but those that are > allowed. > > iptables -A OUTPUT -p tcp --dport 80 -d allowedip -j ACCEPT > iptables -A OUTPUT -p tcp --dport 80 -d centosm

Re: [CentOS] restrict network access

2007-10-21 Thread Christopher Chan
umair shakil wrote: Salam, Squid actually Proxy will do the trick Nope. Not if they are installed on those PCs. Regards, Umair Shakil ETD On 10/19/07, *Arne Pelka* < [EMAIL PROTECTED] > wrote: Hi, I have two pc using centos 4, these machines need

Re: [CentOS] restrict network access

2007-10-21 Thread umair shakil
Salam, Squid actually Proxy will do the trick Regards, Umair Shakil ETD On 10/19/07, Arne Pelka <[EMAIL PROTECTED]> wrote: > > Hi, > > I have two pc using centos 4, these machines need only access to the > (big, class b) local network. Because of security reasons the network > access should

Re: [CentOS] restrict network access

2007-10-20 Thread Arne Pelka
Lorenzo Quatrini schrieb: > I would setup a box with a proxy (eg. squid) and grant full internet > access only to that box. On the other boxes either remove the default > route, or block on the router/firewall internet access. > On the proxy you can easily configure proxies for other services too >

Re: [CentOS] restrict network access

2007-10-19 Thread Lorenzo Quatrini
Arne Pelka ha scritto: Hi, I have two pc using centos 4, these machines need only access to the (big, class b) local network. Because of security reasons the network access should be restricted to this local network - mainly the users of these pc should not be able to access webpages outside

[CentOS] restrict network access

2007-10-19 Thread Arne Pelka
Hi, I have two pc using centos 4, these machines need only access to the (big, class b) local network. Because of security reasons the network access should be restricted to this local network - mainly the users of these pc should not be able to access webpages outside of the local networ