LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Fedora
User Name
Password
Fedora This forum is for the discussion of the Fedora Project.

Notices


Reply
  Search this Thread
Old 03-09-2005, 12:02 PM   #1
mebrelith
Member
 
Registered: Nov 2004
Location: Torreón, Coahuila, México
Distribution: Gentoo
Posts: 342
Blog Entries: 1

Rep: Reputation: 30
Of firewalls and firewall tools


Recently Ive been experimenting and getting to know a bit more of my linux security, so far as firewall stuff I had Firestarter running from the getgo in my FC3. I stumbled upon this Guarddog thingie and decided to see what it was. If I understand correctly my Linux comes with its own firewall thingie (something called iptables and other stuff) and all that Guarddog does is configure it nicely by editing something called rc.firewall.
Now does this means thats all it takes to keep my box secure? A simple tweaking of this rc.firewall file?
So what exactly does Firestarter? It loads its own rules or what? Ive noticed how it not only detects portcalls but it helps me identify'em.
Also, now that Ive tweaked rc.firewall using Guarddog, do I need to keep running Firestarter or could I live without it for now on?

Thanx for any replies and comments.
 
Old 03-09-2005, 05:45 PM   #2
hob
Senior Member
 
Registered: Mar 2004
Location: Wales, UK
Distribution: Debian, Ubuntu
Posts: 1,075

Rep: Reputation: 45
The actual firewall is part of the Linux kernel (it's called iptables). You can see the current rules for it by typing /sbin/iptables -L. Firewall tools feed a ruleset to iptables. If you use more than one on the same system then things may get a bit confusing, that's all.

The rc.firewall file is probably specific to Guarddog.
 
Old 03-10-2005, 04:33 AM   #3
/bin/bash
Senior Member
 
Registered: Jul 2003
Location: Indiana
Distribution: Mandrake Slackware-current QNX4.25
Posts: 1,802

Rep: Reputation: 47
Quote:
So what exactly does Firestarter?
Firestarter is also a firewall just like Guarddog.


Quote:
Also, now that Ive tweaked rc.firewall using Guarddog, do I need to keep running Firestarter or could I live without it for now on?
No they are both firewalls and you should only have one firewall running on your system at a time.
 
Old 03-10-2005, 09:12 AM   #4
Skyline
Senior Member
 
Registered: Jun 2003
Distribution: Debian/other
Posts: 2,104

Rep: Reputation: 45
>> Now does this means thats all it takes to keep my box secure? <<

In addition to utilising a firewall, you should also keep your system updated with the latest security patches etc - the typical option is to use YUM on FC3 to keep your system updated - you should also deploy strong passwords, disable any un-necessary services, use an ordinary limited-user account etc....
 
Old 03-10-2005, 10:28 AM   #5
mebrelith
Member
 
Registered: Nov 2004
Location: Torreón, Coahuila, México
Distribution: Gentoo
Posts: 342

Original Poster
Blog Entries: 1

Rep: Reputation: 30
So, if I understand correctly now that I have rc.firewall properly configured by Guarddog I can ditch Firestarter, right? This might be a dangerous question but, is there any way I can check if my box is really secure? I heard of some security websites where they could check your ports and see if your box is secure, what sites are these? can they really be trusted? should I visit'em and see whats what with my firewall?

Thanx to those who have replied and to those who will reply.
 
Old 03-10-2005, 12:36 PM   #6
/bin/bash
Senior Member
 
Registered: Jul 2003
Location: Indiana
Distribution: Mandrake Slackware-current QNX4.25
Posts: 1,802

Rep: Reputation: 47
You can go to some online scanner, there are many to choose from, e.g. www.grc.com www.dslreports.com/scan/ just to name two. You could also get nmap from www.insecure.org and that way you can check your box yourself.

And yes you should only be running one firewall, so you should turn off either Guarddog or Firestarter, your choice.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
dhcp when two firewalls in series: integrated firewall to router + shorewall iptable Emmanuel_uk Linux - Networking 3 08-15-2005 07:14 AM
cdda ripping tools: what tools are good these days? jgombos Linux - Software 3 01-03-2005 11:09 PM
is there any virtual cd tools like deamon tools on linux ? ixogn Linux - Software 1 02-24-2004 10:19 AM
GUI Tools for Linux Firewall Configuration pradsy90 Linux - Security 3 02-12-2004 08:28 PM
Linux Firewalls [iso firewalls] yoogie Linux - Networking 3 01-28-2002 06:56 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Fedora

All times are GMT -5. The time now is 04:16 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration