Novell Home

Stateful exception for one client

Novell Cool Solutions: Question & Answer

Posted: 2 Jun 2005

Q:
I want to give one client access to the Internet via NAT. The rest of the clients connect to the internet via BMEE Proxy, but that one client needs unrestricted access to the Internet (ping, msn, etc).

How do I make a filter that applies to only 1 client? For example, one fixed IP that can access everything?

A:
Just create a single stateful exception, like so:

source interface: private
dest. Interface: public
packet type: all-ip-st (create this, below)
source address: private IP of the workstation you want to give access
dest. address: any

The app-ip-st packet type is defined as:

protocol: ip
source ports: any
dest. ports: any
stateful: enabled

Novell Cool Solutions (corporate web communities) are produced by WebWise Solutions. www.webwiseone.com

Novell® Making IT Work As One

© 2008 Novell, Inc. All Rights Reserved.