LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices


Reply
  Search this Thread
Old 07-09-2009, 02:28 PM   #1
w1k0
Senior Member
 
Registered: May 2008
Location: Poland
Distribution: Slackware (personalized Window Maker), Mint (customized MATE)
Posts: 1,309

Rep: Reputation: 234Reputation: 234Reputation: 234
Firewall problem in PPPOE


In my Slackware 12.2 I use PPPOE to connect my machine to Internet. In /etc/ppp/pppoe.conf I changed ETH=eth1 to eth0, USER=bxxxnxnx@sympatico.ca to valid user, and FIREWALL=NONE to FIREWALL=STANDALONE. When I run pppoe-start command as root firewall starts. When I run that command as regular user firewall doesn’t start. I registered /usr/sbin/pppoe-start, /usr/sbin/pppoe-stop, as well as /usr/sbin/iptables programs in /etc/sudoers. I prepared also appropriate aliases. I’m pretty sure I ran pppoe-start command as regular user earlier and firewall started properly. Now it doesn’t work. I have no idea what should I do to get firewalled connections to Internet as regular user. Every help will be appreciated.
 
Old 07-11-2009, 10:01 AM   #2
amani
Senior Member
 
Registered: Jul 2006
Location: Kolkata, India
Distribution: Debian 64-bit GNU/Linux, Kubuntu64, Fedora QA, Slackware,
Posts: 2,766

Rep: Reputation: Disabled
Manage your firewall with a GUI tool like guarddog or something else.

That is it.

Why should regular users have the capability to start pppoe?
There is a security risk involved.
 
Old 07-12-2009, 01:22 PM   #3
w1k0
Senior Member
 
Registered: May 2008
Location: Poland
Distribution: Slackware (personalized Window Maker), Mint (customized MATE)
Posts: 1,309

Original Poster
Rep: Reputation: 234Reputation: 234Reputation: 234
Well... Firewall for PPPOE connection is ready out of the box in Slackware. There is no need to configure it for basic usage.

I can run PPPOE as regular user using pppoe-start command and then run firewall using /etc/ppp/firewall-standalone script (after changing mode bits of the last script to executable).

I can run it also using su -c /usr/sbin/pppoe-start command. In that case pppoe-start runs firewall automatically.

In the first case I have to run firewall manually. In the second case I have to use root's password. I wonder if it's possible to run PPPOE as regular user using pppoe-start command which starts firewall automatically without using root's password.

Quote:
Originally Posted by amani View Post
Why should regular users have the capability to start pppoe? There is a security risk involved.
There is no security risk because that regular user it's me. There is no difference whether I start PPPOE connection as regular user or I do it as root. Both cases are equally secure assuming I started firewall.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
pppoe-setup masquerade firewall vs custom firewall matters Slackware 12 03-06-2009 04:50 AM
Using RedHat 8.x with PPPoE as a router/firewall tnine9 Linux - Networking 12 07-31-2005 01:27 PM
Firewall/Router/pppoe/dhcp Beetle B. Linux - Networking 3 09-15-2003 02:07 PM
MNF (Multi Network Firewall) PPPOE Cayouettem Linux - Networking 1 08-16-2003 12:23 AM
pppoe through linux router/firewall ..Tookers.. Linux - Networking 2 04-30-2003 07:34 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware

All times are GMT -5. The time now is 05:10 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration