Re: *nix firewall setup

From: Jason Dixon (jasondixon@myrealbox.com)
Date: 11/27/02

  • Next message: Chris Berry: "Re: Kerio Personal Firewall"
    From: Jason Dixon <jasondixon@myrealbox.com>
    To: security-basics@securityfocus.com
    Date: 27 Nov 2002 15:24:43 -0500
    
    

    On Wed, 2002-11-27 at 01:25, Devdas Bhagat wrote:
    > On 26/11/02 09:20 -0800, jh wrote:
    > > Having never set one up before and only having a little knowledge of linux
    > > where can I go to get a basic tutorial that just covers firewalls and linux.
    > http://www.linuxguruz.org/iptables/howto/iptables-HOWTO.html
    > http://www.google.com/search?q=iptables+howto
    > Search on freshmeat.net for firewall building tools.
    >
    > Or if you want to try out OpenBSD, there is a pf HOWTO on deadly.org
    >
    > If you want to get really funky, look on samag for dead firewall. Thats
    > a shutdown Linux box running as a firewall.

    IIRC, this is using ipchains in runlevel 0. Interesting in concept, but
    lacks stateful inspection. Unless the same can be done via iptables, I
    recommend you stick with the earlier suggestion of OpenBSD/PF.

    -J.



    Relevant Pages

    • Re: Internet Sharing - Security
      ... Can you recommend the steps that I would need to take once I have ... OpenBSD 3.0 installed on my system. ... >>>inexpensive Linux 2.4.x firewall with Netfilter and ISC DHCP is fine. ...
      (comp.security.firewalls)
    • Re: Firewalls in a K-12
      ... on using Linux versus using OpenBSD for your firewall. ... I haven't found using OpenBSD much more difficult than using Linux ... The two arguments I would use against using Linux as a firewall are: ... point of making the default installations secure (although they are ...
      (Security-Basics)
    • Re: The Stunning Failure of OpenBSD
      ... To make the long story short, request your boss to spend about US$100 from ... his petty account to get any router + Firewall + NAT + QoS, ... to replace your Linux router. ... OpenBSD proved to be more ...
      (comp.os.linux.security)
    • Re: Linux or BSD alternative to Windows Home Server
      ... My questions were about Gentoo vs. Linux for a sever, ... I will probably eventually have a dedicated firewall ... if you were to have a file server which is accessible ... I'm aware that I could probably create scripts to regularly backup ...
      (comp.os.linux.misc)
    • Re: Home Security.
      ... features necessary for a firewall (packet filtering and/or proxying). ... security, I'd recommend OpenBSD. ... Another option to try is Linux. ...
      (Security-Basics)