Fedora Linux Support Community & Resources Center

Go Back   FedoraForum.org > Fedora 19/20 > Security and Privacy
FedoraForum Search

Forgot Password? Join Us!

Security and Privacy Sadly, malware, spyware, hackers and privacy threats abound in today's world. Let's be paranoid and secure our penguins, and slam the doors on privacy exploits.

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 11th May 2012, 10:28 AM
kcwong13 Offline
Registered User
 
Join Date: May 2007
Posts: 16
windows_7chrome
iptables filtering within a single machine

Hi there,

Recently I'm trying to Linux Machine (fedora 14 64-bit) for share some services to different user group, I'm wondering whether the below scenario/filtering can be achieve?

[Management Network]
Interface: eth0
IP address: 10.0.1.0/24

[Network 1]
Interface: eth1.100
IP address: 172.0.1.0/24

[Network 2]
Interface: eth1.101
IP address: 192.168.1.0/24

If I'm using SSH to access the fedora with IP address 10.0.1.100/24, when I'm in this SSH session, if I'm try to ping IP address 172.0.1.100/24, I want the iptables drop the packet. Only when I'm SSH into the machine with IP address from 172.0.1.0/24 subnet then can ping through to 172.0.1.0/24 network. same in network 192.168.1.0/24, only when I'm SSH in with source IP 192.168.1.0/24 network, then I can access to the network 192.168.1.0/24.

Hope you kind can advise whether this is workable.

Cheers,

13
Reply With Quote
Reply

Tags
filtering, iptables, machine, single

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Iptables MAC filtering sorin06kjf Servers & Networking 1 22nd June 2009 03:30 PM
iptables mac filtering dodbdts Servers & Networking 3 28th December 2008 04:53 PM


Current GMT-time: 06:17 (Thursday, 21-08-2014)

TopSubscribe to XML RSS for all Threads in all ForumsFedoraForumDotOrg Archive
logo

All trademarks, and forum posts in this site are property of their respective owner(s).
FedoraForum.org is privately owned and is not directly sponsored by the Fedora Project or Red Hat, Inc.

Privacy Policy | Term of Use | Posting Guidelines | Archive | Contact Us | Founding Members

Powered by vBulletin® Copyright ©2000 - 2012, vBulletin Solutions, Inc.

FedoraForum is Powered by RedHat