LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-21-2004, 10:02 AM   #1
pitt30
Member
 
Registered: Jan 2004
Posts: 53

Rep: Reputation: 16
iptables setup for server


I have RTFM and am dizzy and frustrated. i also read over examples of config files and while helpfull, they are just not what im looking for or each one uses different scripting and confuses me further. anyway this is what i want to do.
i have a linksys router connected for cable modem, so it does nat and firewalling. i just want to add another layer of security on my server just in case. meaning i do not need masquerading in iptables.

i want to block everything from the internet (in case it gets passed linky),

be totally open to internal network which has both win and linix boxes, ssh web etc.

allow http, later ftp and possibly vpn from internet to this server.(i know i already need to forward through linky which is a no issue)

basically i really want to lock down this box!

any input would be great. im not asking for you to write this for me just some guidance. even if you can recommend a book etc. the whole point of me going to linux is to learn. so im willing! everyone has thier own school of thought and i dont know which one to follow..anyway thanks for any insight
 
Old 04-21-2004, 10:19 AM   #2
Technoslave
Member
 
Registered: Dec 2003
Location: Northern VA
Posts: 493

Rep: Reputation: 30
http://www.technoslave.net/other/iptables.txt

That is my basic setup for iptables. It's an init script that I have run in level 3 and 5. You'll probably only want to look at the first 146 lines or so, as after that it deals with NAT and the masquerading that you don't want to deal with. Basically, what you're looking for is to DROP everything first, then only allow things through that you want to go through.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
cant setup iptables srnerkar1 Linux - Security 6 11-17-2005 06:02 AM
Need help with iptables setup 2buck56 Linux - Security 10 10-20-2004 12:11 PM
iptables setup peok Linux - Networking 5 11-11-2003 11:00 PM
iptables setup for simple fwd to web server sdbaroni Linux - Networking 3 08-28-2003 12:05 AM
iptables setup bwarn Linux - Networking 1 04-09-2003 01:11 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:10 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration