
104
V 2.2 Copyright SystemExperts 2001,2002,2003
207
WFG Internals (cont.)
n IP Filtering
n OpenBSD's IPF software
n IP routing is enabled
n Packet filtering between the wireless and external
network interfaces
n static filters are configured on boot up
n limit initial wireless network access
n NTP, DNS, DHCP, and ICMP
n for all users: selected email servers, VPN, and web
n When a user authenticates, they are allowed
unrestricted access
V 2.2 Copyright SystemExperts 2001,2002,2003
208
WFG Internals (cont.)
n Web Authentication
n Used for cross-platform
n Apache with SSL
n User enters username and password
n Perl/CGI script then communicates with a Radius server
n if accepted, then commands to allow their IP address are
added to the IPF access rules
n Security
n System access with SSH
n Logs: Syslog, DHCP, and Web authentication logs
Comentarios a estos manuales