RE: Linux as a fully functional firewall?!?

From: Patrick Duane Dunston (duane@sukkha.homeip.net)
Date: 09/26/01


Date: Wed, 26 Sep 2001 09:48:16 -0400 (EDT)
From: Patrick Duane Dunston <duane@sukkha.homeip.net>
To: "'security-discuss@linuxsecurity.com'" <security-discuss@linuxsecurity.com>
Subject: RE: Linux as a fully functional firewall?!?
Message-ID: <Pine.LNX.4.33.0109260944500.20112-100000@ilm25-40-047.ec.rr.com>

I see.

Just curious, if you have an internal host acting as a web server with the
ip address 192.168.0.20

ipmasqadm autofw -A -r tcp 80 80 -h 192.168.0.20

doesn't work for you. That should forward incoming traffic to your
firewall to the host behind the firewall acting as the webserver.

> If the answer is to upgrade my kernel, then that's what I guess what I'll
> do.

That may be the best option. iptables is cool stuff.

-- 
--

duane

_ooOoo_ o8888888o 88" . "88 (| -_- |) O\ = /O ____/`---'\____ .' \\| |// `. / \\||| : |||// \ ,, ", / _||||| -:- |||||_ \ - c | | \\\ - /'| | | `-| \. | \_| `\`---'// |_/ | / `\ \ .-\__ `-. -'__/-. / (/ |__\ ___`. .' /--.--\ `. .'___ |___, | ."" '< `.___\_<|>_/___.' _> \"". | | | | : `- \`. ;`. _/; .'/ / .' ; | | | \ \ `-. \_\_`. _.'_/_/ -' _.' / /____| ===========`-.`___`-.__\ \___ /__.-'_.'_.-'================ ==== `=--=-' hjw b'ger --

GnuPG Public Key: http://sukkha.homeip.net/pgp.html

--

------------------------------------------------------------------------ To unsubscribe email security-discuss-request@linuxsecurity.com with "unsubscribe" in the subject of the message.