Re: Rule matching with USER?
Mark Dixon <[email protected]> Fri, 16 Dec 2022 16:30:30 +0000 (GMT)
| Newsgroups | gmane.comp.security.shorewall |
|---|---|
| Message-ID | <[email protected]> |
On Fri, 16 Dec 2022, Justin Pryzby wrote: ... > That limitation isn't due to shorewall but rather networking in general. > You can't know and certainly couldn't trust the username from a remote > system (like "identd"), and loopback has the same limitation. > >> Any ideas on how to handle this in shorewall, short of fiddling with the >> application to make sure it doesn't bind to the loopback interface, please? > > You could drop packets directed to fw:1332 ... Thanks Justin, Mark