[Tfug] Ideas for handling group based allow/deny permissions?

Choprboy choprboy at dakotacom.net
Wed Jun 23 18:04:08 MST 2004


On Wednesday 23 June 2004 15:51, Shanmugam, Girishan wrote:
> howdy,
> It sounds a lot to me like iptables packet filtering rules, would that be a
> model to build on?
> -Girishan
> 

Yeah, Ill have to think about how to implement something like that, but I'm 
still not sure how to implement it or how it would solve the problem. I 
originally discarded that at the start as I thought of an iptables solution 
as a many-to-one filter (i.e. there are lots of different IPs/source ports 
out there, you filter locally on a single port or source) and the user-groups 
document-groups problem as a many-to-many filter. But maybe I;m mistaken 
about that... I'll have to ponder that a bit more.

Adrian


More information about the tfug mailing list