On Sat, 29 Sep 2001, Nicola Cuomo wrote:

> we have a bunch of Win9x workstation participating in a Win2000 domain
> (  we  cannot upgrade/change the So due to economic/legacy constrain )
> and   a   Linux  router/firewall  doing  NAT  to  share  the  Internet
> connection.
>
> We  now  need  that  only  authenticated domain user can go out on the
> Internet thought the Linux box.
> There  is no explicit association between machine and user so solution
> based on Ip address are not applicable.

Using NAT and Session Authentation with FireWall-1 from Check Point
can do a good job.

Another Choice, is to use proxies for the services. You can try
FWTK for this. Is not supported, but stills work fine for small
things. www.fwtk.org

HTH. Regards.

- Martin


_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to