Re: IP Filtering Patch

Jonathan Greene <[email protected]> Thu, 20 Feb 2003 11:10:24 -0500
Newsgroups gmane.music.equipment.slimp3.dev
Message-ID <[email protected]>
In OS X you can also use http://mymachine.local.  as your local=20
address.  SliMP3 seems to like that the best for streaming to my home=20
machines...




On Thursday, February 20, 2003, at 09:54 AM, Metzger, Michael wrote:

> I unfortunately don't have any access to OSX.=A0 I've noticed on Windows=
=20
> if you type in the machine name or the IP address, it will use the NIC=20
> address as the source and block the IP.=A0 If you type something like=20
> http://localhost:9000/ it will use the localhost as the source and it=20
> works.
> =A0
> The only option I can think of to work around this is grab the source=20
> IP from the request and add it in accordingly, but I'm not sure this=20
> is what is actually needed, especially if there are multiple NICs in=20
> the system.=A0
> =A0
> Any ideas?
> =A0
> Thanks
> =A0
> Mike
>
> -----Original Message-----
> From: dean blackketter [mailto:[email protected]]
> Sent: Thursday, February 20, 2003 12:57 AM
> To: [email protected]
> Subject: Re: [slimp3-dev] IP Filtering Patch
>
> I've checked in this patch (with some rewriting of the strings for=20
> clarity.)
>
>
> On my OS X machine, incoming connections from the same machine are=20
> blocked unless I explicitly put in the IP address for that machine,=20
> that is, even if 127.0.0.1 is allowed, I need to add 10.0.1.204 to=20
> make it work. I'd love a fix for this.
>
>
> -dean
>
>
>
> On Wednesday, February 19, 2003, at 08:13 PM, Metzger, Michael wrote:
>
>
> Ok, sorry about that.=A0 I was working off the base release sources as I=
=20
> didn't have CVS installed previously.=A0 This is a diff direct off cvs=20
> from tonight.=A0 It seems to work nicely with the HTTP Authentication=20
> patch for a fair level of security.=A0
>
>
>
> Let me know if there are any problems.
>
>
>
> Thanks!
>
>
>
> Mike
>
>
>
>
>
>
> -----Original Message-----
>
> From: dean blackketter [mailto:[email protected]]
>
> Sent: Wednesday, February 19, 2003 8:26 PM
>
> To: [email protected]
>
> Subject: Re: [slimp3-dev] IP Filtering Patch
>
>
> Hi Mike,
>
>
>
> It looks like the patch conflicts with the password protection patch=20
> that was just applied this morning.
>
>
>
> Could you update and fix and resubmit the patch?
>
>
>
> -dean
>
>
>
>
> On Wednesday, February 19, 2003, at 04:47 PM, Metzger, Michael wrote:
>
>
>
> Well, after=A0a bit of=A0hacking, I've added basic IP filtering options t=
o=20
> the server code.=A0 This will allow you to specify IP addresses,=20
> wildcard addresses, and ranges to connect to the HTTP and/or CLI=20
> interfaces.=A0 This check occurs immediately after connection by the=20
> client to either server.=A0 After obtaining the IP, the server will=20
> validate the IP against the ruleset (if filtering is enabled) and=20
> either allow the connection to continue or immediately kill it.
>
>
>
>
> Some further info taken from the field descriptions:
>
>
>
>
> For example:
>
>
> 10.1.2.2 will allow only 10.1.2.2 to connect
>
>
> 10.1.2.* will allow anything with an IP in the 10.1.2.x addresses.
>
>
> For ranges, you can do something like 10.1.2.2-50 which will allow=20
> 10.1.2.2 - 10.1.2.50 to connect.
>
>
> Finally, these can be combined like 10.1.2.2,172.16.1.*,192.168.1-255.*
>
>
> NOTE: 127.0.0.1 is always added to the list to allow the local server=20
> to connect.



------------------------ Yahoo! Groups Sponsor ---------------------~-->
Get 128 Bit SSL Encryption!
http://us.click.yahoo.com/FpY02D/vN2EAA/xGHJAA/rIp0lB/TM
---------------------------------------------------------------------~->

To unsubscribe from this group, send an email to:
[email protected]

=20

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/=20