LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices



Reply
 
Search this Thread
Old 09-23-2005, 08:29 PM   #1
shazam75
Member
 
Registered: Oct 2004
Location: Australia, Brisbane
Distribution: Gentoo
Posts: 296

Rep: Reputation: 30
Question about DSL router and small internal network


My current setup is like this:

I have a ADSL modem/router, which is the Gateway to the internet. This has a public address that it gets dynamically from my ISP. Behind this is my Linux PC with a private ip address (192.168.X.X). Hence I am using NAT or IP Masquarading

When I do the All Port Scan test from this site (Shield Up https://grc.com/x/ne.dll?bh0bkyd2) - Is my ADSL router being tested here or my actual Linux box?

I think that it has to be my ADSL router that the test is applied too as this is the "face" to the internet - is this correct?


Regards
Shelton.
 
Old 09-23-2005, 08:37 PM   #2
SteveK1979
Member
 
Registered: Feb 2004
Location: UK
Distribution: RHEL5/6, Solaris 10/11, NetBSD, OpenBSD, FreeBSD, MacOS
Posts: 222

Rep: Reputation: 40
Hi,

Yes you are correct, it will be the router that is being tested as it has the public facing ip address being scanned on one of it's interfaces.

Unless of course it allows all incoming connections or something like that. I don't think any modern adsl router usually has a default configuration like that. Mine certainly doesn't.

If you really want to test you linux box in this way, you could investigate whether the router has a feature to forward all incoming connections to a particular internal host. The Linksys router I have has this feature, they call it a 'DMZ Host'.

Hope this helps,

Cheers,

Steve
 
Old 09-23-2005, 08:39 PM   #3
Brian1
Guru
 
Registered: Jan 2003
Location: Seymour, Indiana
Distribution: Distribution: RHEL 5 with Pieces of this and that. Kernel 2.6.23.1, KDE 3.5.8 and KDE 4.0 beta, Plu
Posts: 5,700

Rep: Reputation: 61
The router is being tested from the outside to the wan port. I myself dislike the sheilds up site since it is out to sell products. Try this one for a better report.
http://www.hackerwatch.org/probe/

You can use nmap to see what is open on your linux box. If you have another computer you can run port scanning software on it and use it to test your linux's internal IP.

Brian1
 
Old 09-23-2005, 08:55 PM   #4
shazam75
Member
 
Registered: Oct 2004
Location: Australia, Brisbane
Distribution: Gentoo
Posts: 296

Original Poster
Rep: Reputation: 30
Wink

Thanks Brian - good site that!
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Small linux box as a wireless router/home network ideas enine Linux - Wireless Networking 16 05-09-2006 10:25 PM
Finding the right router for my small network (high configurability) the theorist Linux - Security 1 01-27-2004 12:20 PM
Netgear router blocking website when using internal network esteeven Linux - Networking 8 09-30-2003 08:48 AM
Super Genius Needed: SuSEfirewall2 HELP with ssh and internal network and router ash0573 Linux - Networking 8 05-01-2003 06:20 PM
DSL/ Linksys DSL Router/ Linux cant see the network... Robert0380 Linux - Networking 9 04-03-2002 05:09 AM


All times are GMT -5. The time now is 05:18 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration