On Sun, 1 Jul 2001 14:30:33 +0300, [EMAIL PROTECTED] (Sami Haahtinen) wrote:

> On Sat, Jun 30, 2001 at 12:07:28PM +0100, Karl E. Jorgensen wrote:
> > Besides, the bad guys may choose not to use DHCP - this is
> > entirely up to the config on the client machines.
> 
> but if you make dynamic firewall rules based on the leases file,
> blocking all outside traffic, it would be efficient enough.

Yes, do routing by host /32 rather than network /24.  Or you can subnet depending on 
your hardware configuration.

Gerard MacNeil
System Administrator


--  
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to