LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-25-2008, 10:11 AM   #1
phantom_cyph
Senior Member
 
Registered: Feb 2007
Location: The Tropics
Distribution: Slackware & Derivatives
Posts: 2,472
Blog Entries: 1

Rep: Reputation: 128Reputation: 128
Shorewall configuration help


Solved my first problem, now I need to know if my configuration is at all secure. I have never used Shorewall, or a text-based firewall for that matter. Here are my files:

Zones:
Code:
#ZONE   TYPE            OPTIONS         IN                      OUT
#                                       OPTIONS                 OPTIONS
fw      firewall
LAN     ipv4
WAN     ipv4
#LAST LINE - ADD YOUR ENTRIES ABOVE THIS ONE - DO NOT REMOVE
Interfaces:
Code:
#ZONE   INTERFACE       BROADCAST       OPTIONS
WAN     eth0            -               dhcp
LAN     eth1            detect
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
Policy:
Code:
#SOURCE DEST    POLICY          LOG     LIMIT:          CONNLIMIT:
#                               LEVEL   BURST           MASK
LAN     WAN     ACCEPT
LAN     $FW     ACCEPT
LAN     LAN     ACCEPT
WAN     LAN     DROP            warning
WAN     $FW     DROP            warning
$FW     LAN     ACCEPT
$FW     WAN     ACCEPT
WAN     WAN     ACCEPT
#LAST LINE -- DO NOT REMOVE
I have not made changes to the other files (except shorewall.conf to enable it to start).

Last edited by phantom_cyph; 11-25-2008 at 10:34 AM.
 
Old 11-25-2008, 12:08 PM   #2
phantom_cyph
Senior Member
 
Registered: Feb 2007
Location: The Tropics
Distribution: Slackware & Derivatives
Posts: 2,472

Original Poster
Blog Entries: 1

Rep: Reputation: 128Reputation: 128
I would prefer to block every port, then open only the ones I need.
 
Old 11-26-2008, 11:18 PM   #3
phantom_cyph
Senior Member
 
Registered: Feb 2007
Location: The Tropics
Distribution: Slackware & Derivatives
Posts: 2,472

Original Poster
Blog Entries: 1

Rep: Reputation: 128Reputation: 128
Just got a new problem. I don't know if its the yahoo protocol or not, but even when I stop my firewall, I can't log on to yahoo's chat via pidgin. AIM works fine, but not yahoo. Did a "shorewall stop", doesn't matter, did it a couple times and it said it had stopped, it did not however say that it was already down. I don't know whats going on with it. I really feel unprotected without a firewall...
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
shorewall rules configuration jindalarpan Linux - Security 1 04-15-2008 10:11 AM
Shorewall Configuration.... tagbantay Linux - Security 3 10-07-2007 07:15 PM
Shorewall rules Configuration.... tagbantay Linux - Security 1 10-03-2007 09:55 PM
Shorewall configuration help required tranceash Linux - Security 1 09-19-2006 10:27 PM
Shorewall configuration question nazs Linux - Security 1 11-08-2005 04:55 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:09 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration