Re: forbid internet access to an application?



Michael Heiming a écrit :

The netfilter owner module can accomplish this objective

Support for the --pid-owner, --sid-owner and --cmd-owner options has been removed from kernel 2.6.14 and later versions.

Interesting, seems my man page is broken

It seems the paragraph about the "owner" match in the iptables man page has been last updated one year before the 2.6.14 kernel was released.

and the OP back to the script I had already recommended. ;-)

Unless he uses a non-SMP kernel version < 2.6.14, including the latest 2.4 versions.

P.S. : Special thanks to Dave Uhring for calling me a cretin.
.



Relevant Pages

  • Re: kernel src.rpm installation
    ... Sounds like the vendor is just to lazy testing this out! ... > module to be loaded in the kernel. ... even find dump excuses for the vendor like you try. ... Michael Heiming ...
    (comp.os.linux.misc)
  • Re: Fedora Core3 - nvidia - I can compile the driver - where to put it ?
    ... which usually limits you to the kernel it was made for. ... > contains the source code for the driver which compiles against the ... > I always buy nVidia because they're so trouble free with Linux. ... Michael Heiming ...
    (comp.os.linux.setup)
  • Re: USB disappeared on Mandrake Limited Edtion 2005
    ... If your boot loader is LILO, ... editor and find the append line. ... selinux=0 at the end of the line beginning with the word kernel. ... Michael Heiming ...
    (comp.os.linux.misc)
  • Re: i need help with quota
    ... "Michael Heiming" wrote in message ... BTW, the old kernel was pretty fine with quotas, the ... > for the quota HOWTO, ...
    (alt.os.linux)
  • Re: init using high cpu
    ... You need GnuPG to verify this message ... >> without any problem with this kernel. ... had the stability problems, loadavg was 5x higher on the system ... Michael Heiming ...
    (comp.os.linux.setup)