About F19 Firewall

Eric H. Christensen sparks at fedoraproject.org
Fri Sep 20 20:59:13 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

On Fri, Sep 20, 2013 at 10:23:27PM +0200, Björn Persson wrote:
> Thomas Woerner wrote:
> >If for
> >example you are using wifi connections at home, work, .. you can bind
> >these to the (for you) appropriate zone. For example work for your
> >work wifi connection. It will be used only if you are connecting to
> >your work wifi connection (it is bound to the SSID).
> 
> Anyone can broadcast an SSID. How does FirewallD authenticate the
> network connection?

Authentication is based on WEP/WPA/WPA2 passphrase, possibly a MAC address (BSSID), and 802.1 authentication.  Much of that is spoofable, however.  This is wireless, however.  Hardline connections will always be a bit more secure and the auto zone there will make more sense.

- -- Eric

- --------------------------------------------------
Eric "Sparks" Christensen
Fedora Project

sparks at fedoraproject.org - sparks at redhat.com
097C 82C3 52DF C64A 50C2  E3A3 8076 ABDE 024B B3D1
- --------------------------------------------------
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (GNU/Linux)
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=dtLT
-----END PGP SIGNATURE-----


More information about the devel mailing list