Re: firewall configuration

From: Tim Haynes (usenet@stirfried.vegetable.org.uk)
Date: 07/23/02


From: Tim Haynes <usenet@stirfried.vegetable.org.uk>
Date: Tue, 23 Jul 2002 20:20:25 +0100

Jaap Looijen <jaap.looijen@xs4all.nl> writes:

> I'm looking for a good program to generate iptables rules for RedHat
> 7.3.
> I prefer a console program , not a GUI ( i like to install as less as
> possible on the firewall).

Wow! Someone who's got the right idea... Two approaches then.

a) vi - steal someone's existing iptables script and adjust to taste. It's
   not exactly hard to work out the syntax;

b) ferm (or an equivalent) - I've never got around to trying it, but
   something where you can specify your rules in a higher abstracted form
   might appeal, maybe even more if you can spew ipchains or iptables from
   the same sources.

The former is quite adequate for me - your needs may differ. :)

~Tim

-- 
The light of the world keeps shining,       |piglet@stirfried.vegetable.org.uk
Bright in the primal glow                   |http://spodzone.org.uk/



Relevant Pages

  • Re: firewall configuration
    ... > I'm looking for a good program to generate iptables rules for RedHat ... > I prefer a console program, not a GUI (i like to install as less as ...
    (comp.os.linux.security)
  • Re: The best GUI for ipchains and/or iptables?
    ... did anything NOT from a gui. ... wanted to do was get a firewall going. ... I struggled with iptables and felt I just couldn't get the hang ... If you *insist* on questing for that GUI, ...
    (comp.os.linux.security)
  • Re: The best GUI for ipchains and/or iptables?
    ... did anything NOT from a gui. ... wanted to do was get a firewall going. ... I struggled with iptables and felt I just couldn't get the hang ... If you *insist* on questing for that GUI, ...
    (comp.os.linux.security)
  • Re: Newbie: iptables, gui firewall suggestions
    ... I didn't want to try to learn the internals of iptables. ... Guarddog uses /etc/rc.firewall as its script. ... needs (providing you can live without redhat's firewall). ... > simple, gui, a builder/editor not another startup program or service. ...
    (RedHat)
  • Re: Forwarding to mail server : problem accessing from local network
    ... I will study again kerrocher's iptables rules, but I don't think I have ... I would rather think that "amd64" doesn't accept response from ... partir d'un poste sur Internet. ... I thougth my forwarding iptables rules were wrong on local network. ...
    (comp.os.linux.networking)