LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-30-2014, 04:41 AM   #1
jross
Member
 
Registered: Apr 2014
Distribution: Xubuntu 14.04
Posts: 164

Rep: Reputation: Disabled
Firewall Status says Disabled routed?


Newbie to linux here. I'm one of those xp refugees!

I installed Xubuntu 14.04 a few days ago and downloaded from the Software Center the GUFW. I simply turned it "on" (deny incoming and allow outgoing).

I saw a post on ubuntu forum that showed how to see the firewall status from the terminal. I did this and got the following:

Status: active
Logging: on (low)
Default: deny (incoming), allow (outgoing), disabled (routed)
New profiles: skip

The post had shown what to expect and it was just as above except it did not have the "disabled (routed)" part.

I can't find out what that means and was concerned something was wrong? Any explanation of this would be appreciated. Also, please remember that I am newbie
 
Old 04-30-2014, 08:44 AM   #2
Ser Olmy
Senior Member
 
Registered: Jan 2012
Distribution: Slackware
Posts: 3,340

Rep: Reputation: Disabled
It refers to rules in the FORWARD chain in the iptables firewall and possibly the ip_forward kernel setting. It's only relevant if you use your system as a router, which I presume you don't.
 
Old 04-30-2014, 01:27 PM   #3
jross
Member
 
Registered: Apr 2014
Distribution: Xubuntu 14.04
Posts: 164

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by Ser Olmy View Post
It refers to rules in the FORWARD chain in the iptables firewall and possibly the ip_forward kernel setting. It's only relevant if you use your system as a router, which I presume you don't.
Thanks for the reply. I'm not very familiar with firewalls, so I don't really understand any of that. But, yes I don't use my system as a router.

Maybe I should be more clear: Is the status readout with the "disabled (routed)" a normal status for what I did (i.e. simply turned it on with GUFW with just the default "deny incoming, allow outgoing") or is this unusual or in any way enabling or disabling something that it wasn't supposed to, given what I did?

Thanks again.
 
Old 04-30-2014, 02:20 PM   #4
Ser Olmy
Senior Member
 
Registered: Jan 2012
Distribution: Slackware
Posts: 3,340

Rep: Reputation: Disabled
No, it's not at all unusual. Disabling routing and/or blocking all forwarding is the best (most secure) firewall setting for a non-router.
 
Old 05-02-2014, 02:08 AM   #5
jross
Member
 
Registered: Apr 2014
Distribution: Xubuntu 14.04
Posts: 164

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by Ser Olmy View Post
No, it's not at all unusual. Disabling routing and/or blocking all forwarding is the best (most secure) firewall setting for a non-router.
Thank you. That's very reassuring.

It's odd, though, that all the examples of what readout you will get on status verbose I have seen on web don't include the " disabled (routed)" part. This Xubuntu 14.04 was just released a few weeks ago, so maybe that is a new inclusion in the report now.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] Firewall will not stay disabled after reboot quasi3 Linux - Software 12 09-01-2009 10:40 PM
dmidecode shows CPU Status: Populated, Disabled By User vpgregory Linux - Newbie 3 01-14-2009 07:58 AM
Ports closed even after firewall disabled LinuxLala Linux - Networking 14 11-17-2008 02:18 PM
Can't see workgroups unless firewall is disabled (Samba) Guitarist88 Linux - Networking 2 04-17-2006 06:49 PM
AGP status disabled percent20 Linux - Hardware 2 03-27-2006 11:42 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 09:02 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration