providing partial access to iptables for non root user

Eric Leblond eric at inl.fr
Wed Feb 23 23:38:59 CET 2005


On Mon, 2005-02-21 at 09:29 -0500, Jason Opperisano wrote:
> On Mon, 2005-02-21 at 06:33, Michael Jürgens wrote:
> > Hi,
> > 
> > I´m looking for a solution to provide a non root user write access to a 
> > chain.
> > 
> > In this special case I have to provide the a mechanism to block some ip 
> > adresses to connect to http.
> > But this should be done by a non root user. The non root user should not 
> > change any other rule.
> > 
> > Any ideas?
> 

Why not to use a conf file with proper right ?
selected user could add rules in the script that will be automatically
inserted into the firewall via a cron task or a sudo script ?

BR,
-- 
Eric Leblond <eric at inl.fr>
INL
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : /pipermail/netfilter/attachments/20050223/89cddd03/attachment.bin


More information about the netfilter mailing list