question on security

From: ELRoguel@smart.com.ph
Date: Mon Nov 04 2002 - 21:51:02 EST


Hi,

we have a bunch of solaris system running behind a firewall with it's own
private network. One of our software vendors need to remotely connect to
one of the machines. we have setup the firewall rule such that it will allow
the vendor's ip (from the internet) to connect to the machine via ssh or
telnet.

The problem is, how can i secure the machine they will connect to such that
it will not be able to telnet or ssh to the other boxes withing the network.
How can i implement security on a user level, such that this particular user
cannot telnet or ssh to the other machines in the network once they are in.
i couldnt use ipfiltering, or tcp wrapper, since it blocks the entire IP.
only this user is not allowed to connect to the other machines.

any advice or input?

Thank you in advance,

Elline

______________________________________
The information transmitted through this mail is intended solely for the
addressee and may be legally privileged. Any disclosure, copying,
dissemination or any action taken or omitted, to be taken in reliance on it,
by persons or entities other than the intended recipient is prohibited.
Smart Communications, Inc.
http://www.smart.com.ph
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:25:13 EDT