[K12OSN] OT: Limit Network Access by time

Christopher K. Johnson ckjohnson at gwi.net
Fri Feb 27 07:45:02 UTC 2004


aust_txv at ACCESS-K12.org wrote:

> Jim I use the cron tab interface in webmin to make my cron tab jobs.
> That's a neat idea overall - Closing internet in/out traffic would be 
> a nice tool.  We get a peer-to-peer issue now and then.
>
> Has anyone had a student connect to their PC at home via VNC ?  Should 
> I be concerned ?  Ideas on how to squash it ?
>
> Thanks,
> Tom Ventresco

You can complicate such access but you cannot block it.  Any unproxied 
service or even ssl-based proxied service can be used to tunnel such 
access.  For instance if you permit access to https then the student 
just has to make their home vnc listen on port 443, or their sshd and 
tunnel their vnc connection to do it securely even.

So you can block ports in 5900-59xx and port 22 if you want to, but 
chances are they will find an alternative, and you will merely have 
complicated your own vnc and ssh access to outside systems.

-- 
-----------------------------------------------------------
   "Spend less!  Do more!  Go Open Source..." -- Dirigo.net
   Chris Johnson, RHCE #807000448202021






More information about the K12OSN mailing list