LinuxQuestions.org
Review your favorite Linux distribution.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 01-17-2005, 10:02 AM   #1
nasirjones
LQ Newbie
 
Registered: Dec 2004
Distribution: arch, ubuntu(headless), redhat
Posts: 14

Rep: Reputation: 0
help with iptables


Im trying to configure a firewall with a linux box and two windows box on a network behind a linksys router. I want the linux box to control the packet flow in and out....is this possible? the linux box has only one eth card so i cant use masq and im a newbie to iptables. can someone help or at least point me in the right direction?

 
Old 01-17-2005, 10:08 AM   #2
masand
LQ Guru
 
Registered: May 2003
Location: INDIA
Distribution: Ubuntu, Solaris,CentOS
Posts: 5,522

Rep: Reputation: 58
hi there

use shorewall
iptables based firewall
shorewall.net

quite simple working

regards
 
Old 01-17-2005, 10:23 AM   #3
nasirjones
LQ Newbie
 
Registered: Dec 2004
Distribution: arch, ubuntu(headless), redhat
Posts: 14

Original Poster
Rep: Reputation: 0
so you dont edit the files directly?? i thought there was just a configuration file that u edit.

is there a way to edit these files directly? I kinna wanted to learn how to script the iptables myself.
 
Old 01-17-2005, 10:54 AM   #4
masand
LQ Guru
 
Registered: May 2003
Location: INDIA
Distribution: Ubuntu, Solaris,CentOS
Posts: 5,522

Rep: Reputation: 58
no i do not edit the iptables script directly
that will take altogether take some good time

instead shorewall generates
u can also edit that directly

for that have a look at the HOWTo's available for iptables firewall at tldp.org

regards
 
Old 01-18-2005, 08:25 AM   #5
ScooterB
Member
 
Registered: Sep 2003
Location: NW Arkansas
Distribution: Linux Redhat 9.0, Fedora Core 2,Debian 3.0, Win 2K, Win95, Win98, WinXp Pro
Posts: 344

Rep: Reputation: 31
I'm not exactly sure how you can have the Linux box do the firewall for your whole network without using it as the router. You could use it as an IDS box and then at least you would know and there are some controls. For that I would reference http://www.internetsecurityguru.com/. It is specific to FC2 but you would get the idea. If you want some documentation on iptables, try http://www.netfilter.org. That should give you some places to start. If you want to take a leap of faith, you might try replacing the Linksys with a Linux box, using it as a router and running IDS. Then you would be able to play with the firewall, get alerts when someone is trying to get in and learn a whole bunch in the process. You would not need a big fancy box to do this with . Even an old 486 or equal would work. If you are using the Linksys to do PPPoe to connect to your ISP the nix box would do that just fine. Good luck and repost when you get a chance.
 
Old 01-18-2005, 09:23 AM   #6
masand
LQ Guru
 
Registered: May 2003
Location: INDIA
Distribution: Ubuntu, Solaris,CentOS
Posts: 5,522

Rep: Reputation: 58
I too agree that ur linux box can be the FW of ur network if it is the router/interface to the internet for ur network

regards
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
An error occured getting IPtables status from the command /etc/rc.d/init.d/iptables s CrazyMAzeY Linux - Newbie 10 08-12-2010 06:25 AM
Iptables - Couldn't load target `ACCPET':/lib/iptables/libipt_ACCPET.so: z00t Linux - Security 3 01-26-2004 03:24 AM
IPtables Log Analyzer from http://www.gege.org/iptables/ brainlego Linux - Software 0 08-11-2003 07:08 AM
iptables book wich one can you pll recomment to be an iptables expert? linuxownt Linux - General 2 06-26-2003 05:38 PM
My iptables script is /etc/sysconfig/iptables. How do i make this baby execute on boo ForumKid Linux - General 3 01-22-2002 08:36 AM


All times are GMT -5. The time now is 10:36 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration