Re: how deep do i need to dive ?

From: Ari Rankum (Ari_Rankum_at_invalid.invalid)
Date: 03/28/04

  • Next message: Andrey Asadchev: "Re: Need help with FreeSwan on SuSE 8.2"
    Date: Sun, 28 Mar 2004 06:07:03 GMT
    
    

    Beowulf wrote:
    > Do I really need to shell out $60 for those thick books on firewalling and
    > hackproofing my home PC? I really would not rather take the time and
    > energy for that if not needed. I just want my home PC to be secure --
    > running Mandrake Linux 9.2 (soon 10.x) with cable modem. Will be running
    > SSH server occassionally. Will just using the point and click
    > security firewall settings in the Mandrake Control Control Center suffice,
    > or perhaps installing some firewall open source app like GuardDog suffice?

    In addition to a hardware firewall, ipf/shorewall/iptables (as others
    have suggested) readup on chkconfig, netstat, and lsof. Turn off every
    service (using chkconfig or the appropriate rc script) that you are not
    using. If you're not sure, turn it off and see what breaks. Use
    netstat and lsof to make sure only the ports you want open are open. If
    you are just surfing and emailing (no web, print, email, game, etc
    servers), then you could probably get away with no open ports. If you
    are fortunate enough to have more than one machine at home, I'd download
    nessus and use it to scan machines inside your network. Once you've
    done that, you might avail yourself of the "ShieldsUp" test at
    www.grc.com, or some similar over-the-net scanner. In the end, you'll
    have learned a lot and probably made yourself safe against all but the
    mob and government organizations.


  • Next message: Andrey Asadchev: "Re: Need help with FreeSwan on SuSE 8.2"

    Relevant Pages

    • Re: using nmap to scan firewall
      ... , Ant wrote: ... for open ports? ... 'netstat' output from the firewall device itself (netstat is a command ... Trying to scan your firewall ...
      (comp.security.firewalls)
    • Re: X-Win32 and SP2
      ... Turn the firewall off, run the application, and immediately use netstat -an ... to display list of open ports. ... > Pro) that have been patched with SP2. ...
      (microsoft.public.security)
    • Re: Virtual Private Network - Beware its a Hackers Secret
      ... So checking for open ports no matter ... The reason for this is because a malicious hacker ... If _you_ did a tiny bit of work, you'd install a Firewall to keep people out, ...
      (comp.security.firewalls)
    • Re: Any suggestions?
      ... trying to get the Kerio program to recognize the proxy browser, ... We have scanned your system for open ports and for ports visible to others ... > "Firewall" tab to "Ask Me First". ... > then see the five or six default rules supplied by Kerio. ...
      (comp.security.firewalls)
    • Re: Virtual Private Network - Beware its a Hackers Secret
      ... So checking for open ports no matter ... The reason for this is because a malicious hacker ... If _you_ did a tiny bit of work, you'd install a Firewall to keep people out, ...
      (alt.computer.security)