some things to discuss about MAC

Ilmar S. Habibulin ilmar at watson.org
Fri Dec 28 13:49:40 GMT 2001


First of all - if we have labels on interfaces, do we need additional
firewall rulez for CIPSO packets? Making such firewall rulez available
will bring more fine grade control over network information flow. So one
can sent secret packets to any ip, and top secret to 1.1.1.1 ip only, for
ex.
Any thoughts, suggestions?


To Unsubscribe: send mail to majordomo at trustedbsd.org
with "unsubscribe trustedbsd-discuss" in the body of the message



More information about the trustedbsd-discuss mailing list