17 Apr
2005
17 Apr
'05
18:17
nordi, I'd like to learn more about this, would you mind to give an example for such a rule? Would you recommand other SGID to block, which? Thanks in advance, Carl Am Sonntag, 17. April 2005 18:52 schrieb nordi:
In order to block that traffic you could make the acroread executable SGID 'acro' and then block all traffic coming from group 'acro'. Iptables has an option for doing this by using the --gid-owner option. Of course that works only with a local firewall.
Regards nordi