PacketFence - BTS - PacketFence
View Issue Details
0000811PacketFencecorepublic2009-10-13 15:342015-02-13 15:26
obilodeau 
obilodeau 
normalfeatureN/A
closedopen 
 
 
0000811: per node whitelisting of violations
We were requested the following feature and it makes sense for me to implement it.

It should be possible to whitelist certain violations on a given node.

The following use case is what we should have in mind when implementing this:
- a policy on the network is to disallow all mobile devices for students
- the staff wants to use mobile devices connected to the wireless network

Right now, we whitelist the staff's mac in the trapping.whitelist parameter. This is not convenient because:
1- its done in global config which is not very cohesive since you are trying to enable a node
2- trapping.whitelist enables the user to avoid all types of violations. This is bad(tm). We would like to allow the user to use the mobile device but still trap him if he's spreading a worm around or scanning the network.

A per node whitelisting of violations is what we need. We should think a little bit more about it when we are there and establish a plan in this bug.
No tags attached.
Issue History
2009-10-13 15:34obilodeauNew Issue
2009-10-13 15:34obilodeauStatusnew => assigned
2009-10-13 15:34obilodeauAssigned To => obilodeau
2011-01-18 12:02obilodeauTarget Version => 2.1.0
2011-03-03 15:15obilodeauTarget Version2.1.0 => +1
2011-03-03 15:18obilodeauTarget Version+1 => +2
2012-02-29 10:58obilodeauCategoryfuture => core
2015-02-13 15:26lmunroNote Added: 0003710
2015-02-13 15:26lmunroStatusassigned => closed

Notes
(0003710)
lmunro   
2015-02-13 15:26   
Old issues.
Most are not relevant to PF 4 and up.

Let's reopen the ones that matter when we move to github.