On 8/13/07, Celejar <[EMAIL PROTECTED]> wrote: > On Sat, 11 Aug 2007 11:02:05 +0100 > Liam O'Toole <[EMAIL PROTECTED]> wrote: > > > On Sat, 11 Aug 2007 09:06:15 +0000 (UTC) > > Simon Brandmair <[EMAIL PROTECTED]> wrote: > > > > > Please notice, that filtering by mac address doesn't really add any > > > extra security. The mac address can easily be changed with ifconfig, > > > which is IMO default on every Debian machine. > > > > While it is true that the MAC address can be spoofed, the intruder > > would need to have an allowed MAC address at their disposal. It > > would require some technical savvy to obtain one. > > Not very much; a scanner will report attached clients' MACs without any > real effort by the 'attacker'. > > > Liam > > Celejar
Would it not be a good idea to use pppoe on the clients and use an ssh tunnel to provide security / authentication? Adrian -- 24x7x365 != 24x7x52 Stupid or bad maths? -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]