On Sat, 29 Sep 2001, Nicola Cuomo wrote:
> we have a bunch of Win9x workstation participating in a Win2000 domain > ( we cannot upgrade/change the So due to economic/legacy constrain ) > and a Linux router/firewall doing NAT to share the Internet > connection. > > We now need that only authenticated domain user can go out on the > Internet thought the Linux box. > There is no explicit association between machine and user so solution > based on Ip address are not applicable. Using NAT and Session Authentation with FireWall-1 from Check Point can do a good job. Another Choice, is to use proxies for the services. You can try FWTK for this. Is not supported, but stills work fine for small things. www.fwtk.org HTH. Regards. - Martin _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls
