logo       
Google Custom Search
    AddThis Social Bookmark Button
-->

Question about access control: msg#00489

Subject: Question about access control
I have a node on my wide-area network that I need to temporarily DENY query
access to.  I know that I can define a named ACL, or simply list discrete IP
addresses in an "allow-query" stanza, but in this case, I have dozens of
nodes at this one particular frame relay site, and would like to block
access from just one of those IP addresses.

Is there anything like a "not" comparator, such that I can say 'allow-query
{ ok_segment_list; "!" bad-boy-ip-address }'

I'm still looking in the other resources, but I'm not seeing anything.

KEN CORMACK
Sr. UNIX Systems Analyst,
    Open Systems Group
Sr. Software Analyst,
    TSG Midrange Systems Group
AFFILIATED COMPUTER SERVICES, INC.
    557 E. Tallmadge Ave., Akron, OH  44310
    mailto:kcormack@xxxxxxxxxxxxxxx
    mailto:ken.cormack@xxxxxxxxxxx
    Phone: (330) 643-6372
    Fax: (330) 643-6367
    Pager: (800) 946-4646 Pin 1437331
    E-Page: mailto:1437331@xxxxxxxxxxxxxxxx

"If that that is 'is' is that that is not 'not is', is that that is 'not is'
that that is not 'is'?  It is!" - Ken Cormack





<Prev in Thread] Current Thread [Next in Thread>