Re: LocalNetwork question.
Chip Mefford <[email protected]>
| Newsgroups | gmane.network.nocat |
|---|---|
| Message-ID | <[email protected]> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Schuyler Erle wrote: > * On 2-Aug-2005 at 3:22PM PDT, Chip Mefford said: > >> Okay, my "regular" folks whine every now and again about nocat. Seeing >>how I don't have an "auth" service set up. in nocat.conf, if I specify >>LocalNetwork 172.24.24.224/27 (on a /26 subnet) would that mean that >>nocat would only trap .224-255 and leave 192-223 alone? >> >>Meaning, folks with assigned (via dhcp) addresses in x.192/27 would >>just roll on past, and folks in the dynamic pool of 224/27 get >>the splash ? > > > Unfortunately, that's not how it works. You'd have to stick a custom > rule or two in your initialize.fw to cause the firewall to circumvent > NoCat for that IP range. In initialize.fw, there is a commented section; AllowedNetworks Is this a template for doing exactly this? Looks like it. Note, the notcat setup is far far away from me, and I don't really have a way to test it right off, otherwise I guess I'd just try it and see ;) > > SDE -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (GNU/Linux) iD8DBQFC7/WW9Q5XTsw599ERAuHfAKCGUv/oil9ca3peDlTXZoeSAlR5sQCeMoIT fsJF5eL0RppaLr/AY2YKaKU= =de5j -----END PGP SIGNATURE-----