Re: Rule matching with USER?

Mark Dixon <[email protected]> Fri, 16 Dec 2022 16:30:30 +0000 (GMT)
Newsgroups gmane.comp.security.shorewall
Message-ID <[email protected]>
On Fri, 16 Dec 2022, Justin Pryzby wrote:
...
> That limitation isn't due to shorewall but rather networking in general.
> You can't know and certainly couldn't trust the username from a remote
> system (like "identd"), and loopback has the same limitation.
>
>> Any ideas on how to handle this in shorewall, short of fiddling with the
>> application to make sure it doesn't bind to the loopback interface, please?
>
> You could drop packets directed to fw:1332
...

Thanks Justin,

Mark