It is currently Mon, 18 Mar 2024 19:52:20 GMT



 
Author Message
 linux firewall
I'm running redhat 5.2 (2.0.36) as my firewall through dsl to our isp.
I've disabled much (telnet, finger, etc).  However, there are several
processes/modules that I don't know what they do so I'm hesitant to
disable them.

I'm currently using ipfwadm with the linux-howto suggested strong rule
set.  All I want is to allow my internal network access to the internet
(web,ftp, telnet and mail).  So I'm guessing that all I need the
firewall to do is packet filtering, although I want it to log anything
anomolous (star trek taugh me something).

Can anyone tell me what is the minimum setup I need to run this?  I want
this to be secure but also compact and efficient.

Thanks much.  Phil



 Sat, 03 Aug 2002 03:00:00 GMT   
 linux firewall
This built me a tight ipfwadm/ipchain firewall rule set
   http://linux-firewall-tools.com/linux/firewall/index.html
I used DENY, hardcoded external addresses, logged everything.

As part of the instruction and if you read the script, it will
give several suggestions as to where you install the firewall.

Check it against yours.

--
The warrenty and liability expired as you read the message.
If the above breaks your system, it's yours and you keep both pieces.
Practice safe computing. Backup the file before you change it.
Do a,  man every_command_here, before doing anything or running a script.



 Sat, 03 Aug 2002 03:00:00 GMT   
 
   [ 2 post ] 

Similar Threads

1. slow pptp for linux firewall clients, fast pptp from Linux firewall

2. FTP client inside linux firewall communicating with FTP server inside another linux firewall

3. FTP server behind linux firewall communicating w/ FTP behind linux firewall

4. Help on firewall ruleset for routing X (Exceed) thru the Linux firewall

5. Help on firewall ruleset for routing X (Exceed) thru the Linux firewall

6. Linux Firewall vs. Checkpoint's Firewall-1

7. Bsd Firewall vs Linux Firewall


 
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group.
Designed by ST Software