LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 01-04-2004, 05:15 PM   #1
marsques
Member
 
Registered: Jan 2004
Location: Manchester
Distribution: slackware...
Posts: 344

Rep: Reputation: 32
A Firewall for linux


could you please recommend a firewall which could be used (have tried Guarddog and Firestarter) had trouble installing Firestarter as it keeps asking for a libasound.la libasound.so could not find it anywhere... or if you could tell me from where can i download the mentioned files it would be grately appreciated...

thanks
 
Old 01-04-2004, 07:12 PM   #2
ac1980
Member
 
Registered: Aug 2003
Location: Trento, Italy
Distribution: Debian testing
Posts: 394

Rep: Reputation: 30
I use shorewall, it's flexible, easy to learn and lightweight.
Actually there is a firewall/router built-in in most linux distro, iptables. It works at kernel level. It's almost impossible to setup
That's where some so-called firewalls such as shorewall come in, they simply help you manage reasonably iptables

http://lists.shorewall.net/pipermail...er/000064.html
 
Old 01-04-2004, 09:18 PM   #3
futhark
Member
 
Registered: Nov 2003
Location: Montréal (Can)
Distribution: FC4
Posts: 110

Rep: Reputation: 15
It is true learning iptables is hard when you don't have prior knowledge of software firewalls. I have spent a lot of time improving my own iptables firewall. I am still collecting bits from the net from time to time. It is only recently I have understood how to host internet games on my local network. I didn't understand how to let them through.

If you don't make a living learning that kind of stuff, consider buying a hardware router/firewall. It will be way safer and easier than messing with iptables.

If you choose the hardway, I suggest this doc:
http://iptables-tutorial.frozentux.n...-tutorial.html

Good luck!
 
Old 01-05-2004, 12:25 PM   #4
marsques
Member
 
Registered: Jan 2004
Location: Manchester
Distribution: slackware...
Posts: 344

Original Poster
Rep: Reputation: 32
thanks guys... sure will give shorewall a go ... about ip tables ... its like doing maintainace work in production factory... unless you know what to do... ur completely lost!

by the way does it mean that if you know how to read and manage iptables you basically dont need a software firewall?
 
Old 01-05-2004, 05:13 PM   #5
marsques
Member
 
Registered: Jan 2004
Location: Manchester
Distribution: slackware...
Posts: 344

Original Poster
Rep: Reputation: 32
well i sorted ma problem out... re installed gnome and things are back to normal... firestarters on fire keeping the flies away...
 
Old 01-05-2004, 08:02 PM   #6
mac_phil
Member
 
Registered: Sep 2003
Distribution: Mandrake 10.0
Posts: 200

Rep: Reputation: 30
Quote:
Originally posted by marsques
thanks guys... sure will give shorewall a go ... about ip tables ... its like doing maintainace work in production factory... unless you know what to do... ur completely lost!

by the way does it mean that if you know how to read and manage iptables you basically dont need a software firewall?
Shorewall, Firestarter, and iptables are not different firewalls. Shorewall and Firestarter are merely graphical interfaces for configuring iptables. Iptables is itself a software firewall, but not in the sense of an add-on Windows software firewall. The firewall is in the Linux kernel itself.

However if iptables is running on a dedicated box then it qualifies as a hardware firewall!

Last edited by mac_phil; 01-05-2004 at 08:07 PM.
 
Old 01-08-2004, 11:29 AM   #7
ac1980
Member
 
Registered: Aug 2003
Location: Trento, Italy
Distribution: Debian testing
Posts: 394

Rep: Reputation: 30
Here's a joke I wrote about iptables in a post...

Quote:
Background: a firewall in integrated in (almost) every linux system: what actually takes care of rejecting and/or forwarding is iptables, which mostly resides in kernel. However, iptables config is pretty hard to understand. Have a look by typing 'iptables --list'.
Think of it as a list of which streets are open or blocked, and you need to allow certain points to be connected. Unless you know really well the city (your network) and spend much time thinking at this, you would likely open the main avenues. This is quite unsafe, since burglers, cia agents and even tanks could get stright to your city core.
That's where 'firewalls' come in: they ease you the task to only allow wanted folks in your town (sounds xenophobist, does't it? ;p )
 
Old 01-08-2004, 12:41 PM   #8
marsques
Member
 
Registered: Jan 2004
Location: Manchester
Distribution: slackware...
Posts: 344

Original Poster
Rep: Reputation: 32
thats sure did clear the storm... but the clouds are still there...
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
BSD Firewall vs Linux Firewall ? rootlinux Linux - Security 5 08-29-2007 07:38 AM
Linux firewall vermaamitabh Debian 9 10-27-2004 09:23 AM
how to m$ win client+firewall to linux sshd and use linux to access the M$ computer c_mitulescu Linux - Networking 7 05-14-2004 12:56 PM
Linux As a Firewall shaundyc Linux - Security 8 05-07-2004 11:56 AM
Linux Firewall preguin1 Linux - Security 7 04-05-2001 04:14 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:05 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration