LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 03-10-2003, 06:15 AM   #1
pilot1
Member
 
Registered: Jun 2002
Location: USA
Distribution: Gentoo, Fedora Core
Posts: 408

Rep: Reputation: 30
Firewall software to use?


I have a computer that i'd like to turn into a firewall for my network, it has the following specs: 200mhz proccessor, 32mb RAM, and 4 gig hard drive, Netgear FA310TX NIC and a 3Com NIC.

What software is the best to use for a computer with those specs?
It's currently running RH 7.2, but I can replace that with whatever is nescessary.

I also have a wireless Linksys NAT/Router, would I plug the 2nd NIC into the Uplink port of the NAT, or the WAN port?
 
Old 03-10-2003, 06:32 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
well the system you have is not really related to the software, the only thing worth thikning about is that you are running a 2.4 kernel, which redhat 7.2 does. All firewalls on linux are created under the same software, and what you would think to be the firewall software is actually just a front end to iptables and netfilter, it's all kept very much under the hood.

i like the firestarter front end, does everythign i need it to, and makes iiptables configuration so much less painful
 
Old 03-10-2003, 06:46 AM   #3
pilot1
Member
 
Registered: Jun 2002
Location: USA
Distribution: Gentoo, Fedora Core
Posts: 408

Original Poster
Rep: Reputation: 30
I'm familiar with IPtables, is there any advantage to using firestarter, OpenBSD, Firewall One or Smoothwall instead of manually setting IPtables up?

Last edited by pilot1; 03-10-2003 at 06:48 AM.
 
Old 03-10-2003, 07:12 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
OpenBSD is a unix variant, like linux, not a firewall. the advantage of somethign like firestarter is that it's extremely easy, rather than extremely hard. an average iptables script can easily be a few hundred lines if you're doing it meticulously, and if you're not comfortable with iptables that's a non starter... ultimatley though having a good knowledge of iptables will help you no end.
 
Old 03-10-2003, 07:19 AM   #5
pilot1
Member
 
Registered: Jun 2002
Location: USA
Distribution: Gentoo, Fedora Core
Posts: 408

Original Poster
Rep: Reputation: 30
I realize OpenBSD is a unix variant, i've just heard it's a good *nix variant to use for a firewall.
I'll try firestarter, thanks.
 
Old 03-10-2003, 07:31 AM   #6
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
Yeah, it is meant to be quite good actually, but naturally it ends up at a point where it's horses for courses and all that. there is always a level you can find to suit your needs against your abilites. i'm still chickening out personally....
 
Old 03-10-2003, 08:27 AM   #7
pilot1
Member
 
Registered: Jun 2002
Location: USA
Distribution: Gentoo, Fedora Core
Posts: 408

Original Poster
Rep: Reputation: 30
Hmm...
This is just for a home network, but i'd like to have as much security as possible without buying expensive firewall appliances.

Do you have any links with information on firewalls in OpenBSD, and do you know how similar it is to Linux?

I might as well at least look into it, i'm not in a rush to replace my NAT and I have alot of time on my hands so I might as well make the best firewall I possibly can.

Last edited by pilot1; 03-11-2003 at 01:09 PM.
 
Old 03-10-2003, 10:48 AM   #8
Burke
Member
 
Registered: Dec 2002
Location: Virginia, USA
Posts: 131

Rep: Reputation: 15
Take a look at ClarkConnect 1.2 (1.2 is based on RedHat 7.3. They'll have a newer version next month based on RedHat 8.0). This is ideal for a home network. When you get it registered (FREE), you get a dynamic dns entry at their *.pointclark.net ... the "*" being the username that you choose when registering. It makes a nice little firewall (Frontend to IPTABLES), also capable of having a DMZ, Samba shares, E-mail, multiple Domains for Apache web hosting, FTP, and includes SNORT pre-configured

http://www.clarkconnect.org
 
Old 03-11-2003, 06:51 AM   #9
eishv
LQ Newbie
 
Registered: Mar 2003
Distribution: RedHat, Fedora, Ubuntu,Trustix, Smoothwall, Knoppix, Whoppix, Phlak,
Posts: 5

Rep: Reputation: 0
smoothwalls really good and easy to setup.
www.smoothwall.org
 
Old 03-12-2003, 06:34 AM   #10
stickman
Senior Member
 
Registered: Sep 2002
Location: Nashville, TN
Posts: 1,552

Rep: Reputation: 53
The besf place to get info about OpenBSD pf is probably the benzedrine site. There are some sample files somewhere on the page.
 
Old 03-12-2003, 12:03 PM   #11
Pcghost
Senior Member
 
Registered: Feb 2003
Location: The Arctic
Distribution: Fedora, Debian, OpenSuSE and Android
Posts: 1,820

Rep: Reputation: 46
Don't do it man. Writting an iptables script from scratch may seem daunting but it's way worth it.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Software firewall. greenthing Linux - Security 1 04-15-2005 09:58 AM
Best software firewall proton666 Linux - Newbie 1 12-03-2004 04:06 PM
What is the best software firewall? ACURA TL-S Linux - Newbie 5 08-03-2003 12:36 PM
Software Firewall PionexUser Linux - Newbie 1 07-13-2003 10:45 AM
FireWall Software? mikeshn Linux - Software 3 08-16-2002 06:05 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:09 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration