Hi all,
I want to restrict all outbound tcp connections on a Solaris 8 box, but
only for some users. Do you guys hava any idea if this is possible ?
The reason I'm doing this is because some external contractors have VPN
access to that box, but from there they can go in a lot of places in
our network.
If I cannot do that I will probably restrict all outbound access with
destination port 22 from that box.
Waiting for ideas.
Regards,
Emil
|
|
0
|
|
|
|
Reply
|
egrama (15)
|
6/30/2006 10:49:56 AM |
|
How about a separate SSH proxy between this VPN box and intranet?
It can be just a cheap Solaris x86 laptop with a picky sshd
configuration
and IPFilter blocking all other ports.
Regards,
Andrei
|
|
0
|
|
|
|
Reply
|
aryzhov
|
6/30/2006 11:09:05 AM
|
|