LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-22-2008, 09:22 AM   #16
unixfool
Member
 
Registered: May 2005
Location: Northern VA
Distribution: Slackware, Ubuntu, FreeBSD, OpenBSD, OS X
Posts: 782
Blog Entries: 8

Rep: Reputation: 158Reputation: 158

Quote:
Originally Posted by Steve W View Post
>>>... a firewall is almost pointless in Linux.

Right, that's the line I'm focusing on then.

In reality, I'm more worried about that IP address vulnerability that was revealed for all browsers (regardless of platform) a few months ago. If I download and install Firefox 3 (the latest Linux build on their website is 3.0.3 - that's not the dreaded beta version I've read so much bad press about, is it?), will that vulnerability then be closed?
Actually, I think firewalls are essential, even in Linux. There have been MANY machines that I've seen firsthand that have been compromised that have been running Linux. In fact, a simple Nmap scan can offer tons of information against a Linux machine. Such scans give the cracker enough information to make certain determinations (what services to attack, what hosts to scan based on response to the scan...). While you can harden a Linux machine to not offer up such data, the quicker way is to block such activity with a firewall. I'd even suggest that every single Linux machine should run a local instance of Iptables.

Iptables will not stop a majority of application-based attacks. A good example would be MySQL running behind an Apache install (or even one of those applications by itself). Some companies I work with are having issues with SQL calls being made against webservers because the SQL database is offering data to strangers. Situations such as these suggest application permissions misconfigurations.

On the whole, though, a firewall is a good thing. One should not assume that Linux is doing a good enough job on its own. Security should always be a layered process.
 
Old 10-23-2008, 09:53 AM   #17
lo-kəy
LQ Newbie
 
Registered: Oct 2008
Distribution: slackware
Posts: 10

Rep: Reputation: 0
The DNS issues had nothing to do with your system or browser. Unless you run BIND.
Mostly fixed, but you can test your ISP provided nameservers here:

http://www.doxpara.com/

If vulnerable consider complaining and using an alternative, such as OpenDNS.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Software Firewalls VS Hardware Firewalls metallica1973 Linux - Security 7 03-17-2006 02:21 PM
Linux Firewalls LordCantenberry Linux - Security 5 12-24-2003 10:42 PM
Firewalls for Linux Edric Linux - Security 5 10-11-2003 06:56 AM
Linux Firewalls Elise Linux - Security 12 04-04-2002 08:20 AM
Linux Firewalls [iso firewalls] yoogie Linux - Networking 3 01-28-2002 06:56 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:50 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration