Grant Taylor <
[email protected]> ha scritto:
On 12/1/20 3:58 AM, Carlos E.R. wrote:
In Linux, you filter ports, not programs.
IPTables can filter based on cgroup and owner. So you can get down to
program(s) in a cgroup, thus effectively filtering by program.
But this is only applicable on the host based firewall. An off-host
firewall won't have visibility into this information.
May be there are different front end than iptables to do this, but
my question was general not about linux and iptables, or about
make a app. firewall with iptables.
But your answer make me think about use different rules ( or route
if there are more than one route ) for different
program/process.
And exist the waf web app. firewall that filter the http searching bad request or strings.
--
Grant. . . .
unix || die
--
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)