LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-24-2006, 03:20 AM   #1
bondoq
Member
 
Registered: Nov 2004
Posts: 77

Rep: Reputation: 13
secure the network


i am using linux server ( fedora core 5 ) and the local network is using windows xp

how to protect my local network from spam,viurus and the trojans ?

can i use iptables and squid to do that ?

please answer me quickly


thank you in advance
 
Old 09-24-2006, 03:29 AM   #2
aqoliveira
Member
 
Registered: Dec 2001
Location: Portugal
Distribution: /Red Hat/Fedora/Solaris
Posts: 622

Rep: Reputation: 30
Hey

I just wanted to know if you have any experiance in the security field so that I may refer you to the right tools you may use. The is a number of ways wec an configure this software that you requested but it depends if you feel at home with the GUI or a shell.

The other quetion are you looking for an examples of the above or just some guidance in how you should set this up?

Cheers
Tony
 
Old 09-24-2006, 03:54 AM   #3
bondoq
Member
 
Registered: Nov 2004
Posts: 77

Original Poster
Rep: Reputation: 13
hey

thank you for your reply

i need some guidance in how to set up that and examples
because i don't have enough experiance in security in linux and i want to have the experiance

can you help me ?

thank you very much
 
Old 09-24-2006, 07:55 AM   #4
amitsharma_26
Member
 
Registered: Sep 2005
Location: New delhi
Distribution: RHEL 3.0/4.0
Posts: 777

Rep: Reputation: 31
Quote:
Originally Posted by bondoq
i am using linux server ( fedora core 5 ) and the local network is using windows xp

how to protect my local network from spam,viurus and the trojans ?
can i use iptables and squid to do that ?
Yes you can setup iptables + squid to effectively do this.

With squid

* disable the download access of any *.exe / *.rar / *.zip (or you could further use domain policies with samba or any other M$ domain to restrict downloading for some specificable files.
* disable all the porn & warez sites with url regular expression filtering (google.com/linux) or many LQ other queries will help you at this.
* disable all the p2p & messengers.

With iptables
* Block any new packets from your Externet network (only net established n related IN)
* Block any request going out apart from 443 & 80 port OUT to internet from your SQUID box or EXT interface.
* I dont suggest UDP packets to go out.. If you are only using SQUID at this box, you should disable UDP packets OUT apart from 53 port(for DNS).
* Use initial policies of DROP, if you are not much sure about your iptables.
* Block p2p.

Probably you'll get many threads here at LQ by a simple search of firewall & that will further assist in you deep & more at the same.

The above mentioned suggestions are just a part of actual implementation but i suggest them as a MUST & you should further tune your firewall up as you gotta learn it while going through documentation & LQ threads.
__________________
With best regards,
Amit..
--
Quote:
Originally Posted by Albert einstein
Imagination is more important than knowledge. Knowledge is limited. Imagination encircles the world.
--
RSYNC tutorial : http://www.amitsharma.linuxbloggers.com/how_to_rsync.htm
FIND command tutorial : http://amitsharma.linuxbloggers.com/how_to_find.htm
Samba tutorial : http://www.amitsharma.linuxbloggers.com/how_to_samba.htm
Port forwarding tutorial: http://amitsharma.linuxbloggers.com/portforwarding.htm
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Is this a secure way to set up a home network (with network storage) ? phildacey Linux - Security 2 08-24-2006 04:25 AM
How to secure wireless network pixietoon Linux - Wireless Networking 4 05-18-2006 11:51 AM
secure network snow bird Linux - Networking 1 01-10-2006 01:41 PM
how secure is my network? msound Linux - Security 8 06-27-2005 07:12 PM
How secure is my Network Irish Whiskey Linux - Security 3 03-26-2003 04:07 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:33 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration