On Wed, Aug 27, 2003 at 01:30:23PM -0700, Rus Foster wrote:
> Hi All,
>  I'm just trying to find out if what I think is true that pf can firewall
> with regard to user-id's or am I just imaginig it? Say for example I want
> to stop bob accessing but allow rita who are both on the same
> machine?
one way to do this is to use authpf(8) and let bob authenticate thru it
on the gw machine. after he's done, he will just close his ssh session
and all access to 10/8 will be stopped by the gw from the machine bob
has authenticated from. of course, it is highly advised to use
ClientAliveInterval and ClientAliveCountMax in sshd_config(5)

