is a palo alto It has the form of filtering by users for what I was watching and reading. i can do a rule that says, these users can reach such ip by such port but there is no case, try to configure it but it always throws an error that it does not reach the equipment or that it is down https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/authentication/authentication-types/ldap 2018-06-01 12:21 GMT-03:00 Rowland Penny via samba <samba at lists.samba.org>:> On Fri, 1 Jun 2018 12:10:04 -0300 > Carlos Bordon via samba <samba at lists.samba.org> wrote: > > > jajaja ok, you made me laugh > > I have no idea why ? > > > > > I want the firewall to have the ability to see samba users and groups > > to be able to make firewall rules not only by ip, but also by users > > How do you do this with ldap ? > Do you store anything in ldap or do you just authenticate to ldap ? > What firewall program do you use ? > > Rowland > > > > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >
On Fri, 1 Jun 2018 13:03:08 -0300 Carlos Bordon via samba <samba at lists.samba.org> wrote:> is a palo alto > > It has the form of filtering by users for what I was watching and > reading. i can do a rule that says, these users can reach such ip by > such port but there is no case, try to configure it but it always > throws an error that it does not reach the equipment or that it is > down > > https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/authentication/authentication-types/ldap >Can I raise that URL by: https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/authentication/authentication-types/kerberos#id31c801af-1689-432c-aeb8-b1fb5551fc1a It also supports RADIUS ;-) Rowland
yes, but with kerberos i dont have the posibility to make policies or rules for traffic filter 2018-06-01 13:14 GMT-03:00 Rowland Penny via samba <samba at lists.samba.org>:> On Fri, 1 Jun 2018 13:03:08 -0300 > Carlos Bordon via samba <samba at lists.samba.org> wrote: > > > is a palo alto > > > > It has the form of filtering by users for what I was watching and > > reading. i can do a rule that says, these users can reach such ip by > > such port but there is no case, try to configure it but it always > > throws an error that it does not reach the equipment or that it is > > down > > > > https://www.paloaltonetworks.com/documentation/80/pan-os/ > pan-os/authentication/authentication-types/ldap > > > > Can I raise that URL by: > > https://www.paloaltonetworks.com/documentation/80/pan-os/ > pan-os/authentication/authentication-types/kerberos# > id31c801af-1689-432c-aeb8-b1fb5551fc1a > > It also supports RADIUS ;-) > > Rowland > > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >