About F19 Firewall

Björn Persson bjorn at xn--rombobjrn-67a.se
Fri Sep 20 22:40:15 UTC 2013


Mateusz Marzantowicz wrote:
>On 20.09.2013 22:23, Björn Persson wrote:
>> Anyone can broadcast an SSID. How does FirewallD authenticate the
>> network connection?
>
>FirewallD is not responsible for such authentication/AP validation.
>Firewall as such is not meant to assure you're connecting to where you
>want.

It's FirewallD that introduces the zone concept. FirewallD is therefore
responsible for ensuring that the network has been authenticated before
it switches to a zone that assumes an isolated and friendly network. Of
course FirewallD can delegate the authentication to another program,
but simply stating that FirewallD is not responsible doesn't answer the
question.

-- 
Björn Persson

Sent from my computer.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: not available
URL: <http://lists.fedoraproject.org/pipermail/devel/attachments/20130921/e9a897dc/attachment-0001.sig>


More information about the devel mailing list