LinuxQuestions.org
View the Most Wanted LQ Wiki articles.
Go Back   LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise
User Name
Password
Linux - Enterprise This forum is for all items relating to using Linux in the Enterprise.

Notices

Reply
 
LinkBack Search this Thread
Old 01-29-2012, 07:27 PM   #1
tdbabar
LQ Newbie
 
Registered: Jul 2007
Distribution: RedHat
Posts: 17

Rep: Reputation: 0
Apache with MAC based access control


Hi,

I have a Apache server on internet and want to force the access control to limited clients only. The clients do not have fixed IPs so I want to use the client MAC address based access control.
Can someone let me know which open source tools can help to setup this?
 
Old 01-29-2012, 09:38 PM   #2
TB0ne
Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 10,003

Rep: Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189
Quote:
Originally Posted by tdbabar View Post
Hi,
I have a Apache server on internet and want to force the access control to limited clients only. The clients do not have fixed IPs so I want to use the client MAC address based access control. Can someone let me know which open source tools can help to setup this?
Squid can do it.
http://wiki.squid-cache.org/SquidFaq...her_than_IP.3F

IPFW can do it as well
http://yplakosh.blogspot.com/2008/12...ic-by-mac.html
 
Old 01-30-2012, 08:21 AM   #3
tdbabar
LQ Newbie
 
Registered: Jul 2007
Distribution: RedHat
Posts: 17

Original Poster
Rep: Reputation: 0
I think Squid is not the option that could work for us, as I guess it would need the proxy config settings at client level.

Could you please give some more details about IPFW? I do not see IPFW for RHEL/CentOS Linux.
 
Old 01-30-2012, 10:51 AM   #4
TB0ne
Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 10,003

Rep: Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189Reputation: 1189
Quote:
Originally Posted by tdbabar View Post
I think Squid is not the option that could work for us, as I guess it would need the proxy config settings at client level.
Not necessarily. You can set up Squid to be transparent, and use IPtables to forward all port 80 traffic incoming to that box through Squid, at which point the ACL's will take effect. A bit roundabout, though.
Quote:
Could you please give some more details about IPFW? I do not see IPFW for RHEL/CentOS Linux.
My apologies...the rules I gave in that second link apply, but use iptables instead of ipfw. The rest of the command should be the same.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
dovecot - ip based access control for a specific account ddaas Linux - Server 0 04-05-2011 11:44 AM
[SOLVED] user name based access control in squid. lasantha Linux - Server 3 10-26-2010 03:16 AM
Access control with IP and MAC addresses (Squid) rhce_naresh Linux - Security 3 08-18-2009 02:13 AM
LXer: Role-based Access Control in SELinux LXer Syndicated Linux News 0 02-18-2008 09:50 PM
Can I deny access based on mac or IP address with shorewall? enigma_0Z Linux - Networking 1 06-02-2005 04:15 PM


All times are GMT -5. The time now is 04:20 PM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration