[ previous ] [ next ] [ threads ]
 
 From:  Dinesh Nair <dinesh at alphaque dot com>
 To:  Adam Nellemann <adam at nellemann dot nu>
 Cc:  m0n0wall dash dev at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall-dev] Beta 1.1b8
 Date:  Mon, 17 May 2004 15:24:06 +0800 (MYT)
On Mon, 17 May 2004, Adam Nellemann wrote:

> I wouldn't say any of this is "overwhelming", so perhaps you should wait
> to hear from other users as well before deciding. On the other hand, I

a good argument for the feature, adam.

> can't see any harm in adding this feature (that's assuming you have
> nothing better to do with your time, of course?) If left unused I assume
> that everything will be the same as before security- and other-wise?

there is no security implication, as the firewall (ipfilter) can (and
should) be used to override any filtering which the captive portal may let
thru. manuel and i have exchanged emails on this, and have come to
consensus that we'd leave any filtering to be done thru ipfilter, and use
ipfw for traffic shaping and the captive portal.

so, in a roundabout way, everything should be the same security and
other-wise.

Regards,                           /\_/\   "All dogs go to heaven."
dinesh at alphaque dot com                (0 0)    http://www.alphaque.com/
+==========================----oOO--(_)--OOo----==========================+
| for a in past present future; do                                        |
|   for b in clients employers associates relatives neighbours pets; do   |
|   echo "The opinions here in no way reflect the opinions of my $a $b."  |
| done; done                                                              |
+=========================================================================+