LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-08-2003, 04:11 PM   #1
kdemaree
LQ Newbie
 
Registered: Nov 2003
Posts: 4

Rep: Reputation: 0
Unhappy blocking web access for dial-up user


How can I block web access for a given dial-up user? Or to put it another way, how do you set up an "e-mail only" account for a single user.

Running RH 6.1, Apache, Sendmail, RADIUS.

Everything I've seen in search responses deals with LANs in which access is blocked using ipchains for a single IP address, but that won't work for dial-up users getting different IPs on each dial-up attempt.

Thanks!
 
Old 12-08-2003, 04:30 PM   #2
Pcghost
Senior Member
 
Registered: Feb 2003
Location: The Arctic
Distribution: Fedora, Debian, OpenSuSE and Android
Posts: 1,820

Rep: Reputation: 46
What kind of access are you trying to block? Are you trying to stop connections to your server from users of dial-up internet accounts? A little more information is needed.
 
Old 12-09-2003, 10:38 AM   #3
kdemaree
LQ Newbie
 
Registered: Nov 2003
Posts: 4

Original Poster
Rep: Reputation: 0
We're a small ISP doing dial-up and satellite access. Recently had a couple of customers inquire about e-mail only accounts.

Trying to figure out how to block a dial-up customer from accessing the internet beyond our server/router and limit them to SMTP/POP3 functions only.

We're running Lucent Portmasters (PM3) as the dial-up servers, with RADIUS running on the RH server for authentication. Using a Cisco 2500 series router.

I've got a couple of customers requiring static IP addresses, which I've been able to do in RADIUS with no problem. I was thinking about a solution to assign the e-mail customer a fixed IP, and then somehow filter that address using IP chains or the router. I think the block would have to occur at the router, thus limiting the e-mail customer to our subnet.

Otherwise, I would need some sort of filter/block that looks at the username and dynamic IP address assigned by RADIUS that would work regardless of the IP assigned.

If there's a different/simpler approach, let me know....

Thanks!
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Web Server to able to Access by Authorise User. Kitara Red Hat 0 06-04-2004 01:52 PM
Can't access user account web page in browser - ~username DogTags Mandriva 6 01-29-2004 08:29 AM
Web Blocking Software RanmaPhreak79 Linux - Software 4 01-14-2004 04:46 PM
Blocking web sites lovswr Linux - Software 6 11-03-2003 12:10 PM
Web page user access Cristian Negres Linux - Newbie 2 01-05-2002 12:43 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 09:50 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration