> several viruses do change the MAC address. The only real
> security is to have one user per port and filter the ports.
> Next step (but not as safe) is to wire down the arp table and only accept
> things that are in there (will be easy to implement in the
> new ipfw)

I think it would be easier to deny all mac address in the ipfw rules except
by those that you know, right?

---
Joao Carlos
[EMAIL PROTECTED]


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-hackers" in the body of the message

Reply via email to