ip addresses

Luke Scharf luke.scharf at clusterbee.net
Mon Oct 20 14:30:57 EDT 2008


Ken Raeburn wrote:
> On Oct 19, 2008, at 11:45, josh at acm-csuf.org wrote:
>   
>> Is there a way on UNIX kerberos to only have the thing listen on one
>> interface or IP address. intead of listening on all ips with port 88.
>>     
>
> Not in MIT's current implementation, no.
>   
Josh,

You could use iptables (or some other host-based firewall) to drop 
packets to port 88 on particular interfaces.

-Luke

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3319 bytes
Desc: S/MIME Cryptographic Signature
Url : http://mailman.mit.edu/pipermail/kerberos/attachments/20081020/279684e0/attachment.bin


More information about the Kerberos mailing list