LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 02-20-2017, 06:00 AM   #1
Pentti Poytakangas
LQ Newbie
 
Registered: Mar 2011
Location: Finland
Distribution: S64-current/multilib
Posts: 27

Rep: Reputation: 2
Smile server firewall?


Hei!
I wodering.Server whith NAT (masquerade,fowarding and iptables).
Does that server iptables block incoming traffic for localnet?
Many people think yes it blocking.Are we right?

Thanks!
 
Old 02-20-2017, 06:16 AM   #2
r3sistance
Senior Member
 
Registered: Mar 2004
Location: UK
Distribution: CentOS 6/7
Posts: 1,375

Rep: Reputation: 217Reputation: 217Reputation: 217
iptables will block anything if told too including localhost but without seeing your ruleset or knowing the distribution, it is hard to answer that question in regards to your set-up.

Last edited by r3sistance; 02-20-2017 at 06:45 AM.
 
Old 02-20-2017, 06:44 AM   #3
Turbocapitalist
LQ Guru
 
Registered: Apr 2005
Distribution: Linux Mint, Devuan, OpenBSD
Posts: 7,306
Blog Entries: 3

Rep: Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720Reputation: 3720
Which distro, including version, are you asking about?

Regardless, the specifics would probably be found in the output of the iptables-save and ip6tables-save. Whether or not you show those here is up to you, but you'd need to work through the chains as an imaginary packet or three to see what will be blocked. Or you can just insert an extra rule right before the block which logs the packets to be blocked. That way you can see in the log what is really getting blocked and what is really getting let through.
 
Old 02-20-2017, 03:15 PM   #4
jefro
Moderator
 
Registered: Mar 2008
Posts: 21,978

Rep: Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624Reputation: 3624
You could use FirewallBuilder to make up any sort of firewall you wish. http://www.fwbuilder.org/

I'd be more inclined to make a dedicated firewall system running pfsense or untangle or such.

Wonder why LQ doesn't offer a pre-made template for users??? Might work on that as a feature here.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
What firewall to use with VPS server that doesn't have stateful firewall matching Alan_SP Linux - Security 18 10-16-2015 08:40 AM
redhat as webserver, ftp server, Mail server, firewall ineth Linux - Newbie 1 09-10-2005 08:14 AM
help with client side NFS-firewall setup and server side NIS-firewall setup niverson Linux - Networking 3 02-02-2004 08:52 AM
Firewall and server in one journeyonline Linux - Security 2 08-04-2003 04:04 PM
Server behind firewall gdw Linux - Networking 4 02-27-2003 12:40 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie

All times are GMT -5. The time now is 07:30 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration