LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Fedora
User Name
Password
Fedora This forum is for the discussion of the Fedora Project.

Notices


Reply
  Search this Thread
Old 03-28-2016, 05:32 PM   #1
nix84
Member
 
Registered: Apr 2014
Posts: 276

Rep: Reputation: Disabled
Use of Ip table command to block port in Fed 23


Found an open source bash intrusion detection script.
It blocks the port being accessed with an IP table command.
My experience a couple of years back with IP tables kept all commands in about 3 different groups. I wonder if this script would even work because the Fed 23 Firewall is in the kernel so would an IP table command even work?
 
Old 03-29-2016, 03:12 AM   #2
tshikose
Member
 
Registered: Apr 2010
Location: Kinshasa, Democratic Republic of Congo
Distribution: RHEL, Fedora, CentOS
Posts: 525

Rep: Reputation: 95
Hi,

I think you are not giving enough information for us to try to assist you with the problem you seem to have.

What I understood is that you have a bash intrusion detection script that block ports by using iptables command.
And actually you are wondering it will work on Fedora 23.

I do not know to which 3 different groups you are referring to that keep iptables commands.
And why you think that just in Fedora 23 is the firewall kept in the kernel. Packets have always been handled by the kernel, in Fedora 23 and as well in previous versions.

That said, in Fedora 23 all the ports are closed by default in the public zone with the firewalld daemon.
The exceptions are DHCP for IPv6 and SSH.
While you should not really be concerned about the first, the last can be a concern if you are using weak passwords that can be easily guessed or brute forced attacked.
By default Fedora 23 does not protect you against those threats.
Maybe you can just remove SSH from being accessible to your machine, if do not need such an access.

I hope my post will be helpful to you.
 
Old 03-29-2016, 03:48 AM   #3
syg00
LQ Veteran
 
Registered: Aug 2003
Location: Australia
Distribution: Lots ...
Posts: 21,141

Rep: Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123Reputation: 4123
Quote:
Originally Posted by tshikose View Post
I do not know to which 3 different groups you are referring to that keep iptables commands.
Maybe the chains - INPUT, OUTPUT, FORWARD ?.

To the OP - try the following list command, it should be enough to convince you to leave iptables well alone unless you are really comfortable with it- at least on Fedora
Code:
sudo iptables -L | less
 
Old 03-31-2016, 05:15 PM   #4
nix84
Member
 
Registered: Apr 2014
Posts: 276

Original Poster
Rep: Reputation: Disabled
Use of Ip table command to block port in Fed 23

@syg00: As I said I have built my own IPTABLE firewall but after a couple of years that stuff get fuzzy.
@tshikose: the question is as I am too distant from IPTABLE use and especially in F23: can an IPtable command function alone and independent from the INPUT, OUTPUT, FORWARD, NAT groups of the firewall. My feeling is that it can't. Especially with the kernel based one which may/not be IPTABLE in F23. Hopefully that clarifies the query.
BTW I have read that unless one is really using IPV6 it should be closed too. Also I have 2 open ports in F23 631 and 53 if that is meaningful.

Last edited by nix84; 03-31-2016 at 05:17 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
kill command, fed 17 ronss Fedora 1 09-04-2012 11:38 AM
how to fed command to shell through programm vikas_choudharyy Linux - General 1 07-13-2011 07:10 AM
Exim: Is there away to block command when someone telnets to exim's port? abefroman Linux - Software 1 09-26-2010 08:47 AM
Block table with Mysql chobong Linux - Server 8 03-01-2010 09:22 PM
Upgrade Fed 6 to Fed 8 using only the *.iso ericcarlson Fedora 1 11-18-2007 02:25 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Fedora

All times are GMT -5. The time now is 10:46 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration