1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

help with access restriction or iptables

Discussion in 'Tomato Firmware' started by dvdhll, Dec 23, 2009.

  1. dvdhll

    dvdhll Addicted to LI Member

    hello everybody. i'm running a network of 10 computers connected to wrt-54gl with tomato 1.27. i'm willing to apply some rules to some of the computers:
    * one computer (identifoed by its MAC address) should NOT be able to surf the internet except for 5 certain websites, and except for pop3 and smtp. this policy should be applied all day, everyday.
    * one computer (again, identifoed by its MAC address) should NOT be able to connect the internet except for pop3 and smtp. this policy should be applied everyday between 18:00 to 22:00. at the rest of the time it should get full access.

    i looked at the access restriction section, and found how to restrict all http trafic, but couldn't find how to exclude 5 websites so they'll be accessible. i guess this can be done bu IP tables. so, dear experts, can you help me?

    thanks
    David
     
  2. TVTV

    TVTV LI Guru Member

    From the Tomato FAQ:
    So, if i'd want to restrict www.yahoo.com, i'd have to write yahoo in the HTTP Request box and all sites containing "yahoo" in their "name" would be blocked.
    Mind you, the above example would block ALL sites containing the word "yahoo" in their hostname, path or querry. If you only want to block www.yahoo.com or any subdomains, you could try and use the characters Jon explained above.
     
  3. dvdhll

    dvdhll Addicted to LI Member

    thank you, bit what i need is the other way: how to block everything BUT yahoo? i dont think "http request" gives this option
     
  4. TVTV

    TVTV LI Guru Member

    Oh. I'm sorry, i must've misread. :) It was 4 in the bloody AM when i wrote that post. :D
    Well, yes, maybe some of the gurus here may be able to help you. Sounds like a job for IPTABLES, yes.
     
  5. dvdhll

    dvdhll Addicted to LI Member

    can anybody please try and help me? how do i enable access to certain websites for a certain MAC address, and block all other websites?
     

Share This Page