LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 08-24-2004, 11:30 PM   #1
Joto John
LQ Newbie
 
Registered: Aug 2004
Posts: 1

Rep: Reputation: 0
Firewalls to Protect From Remote Login/Viruses/etc


Hello,

I've been looking into purchasing a firewall to protect my PC from Remote Login, Viruses, Spam, and so on. However, I was wondering if there was any way to find out who was on the other end of the situation. Please help.

Thank You
 
Old 08-25-2004, 03:41 AM   #2
Thoreau
Senior Member
 
Registered: May 2003
Location: /var/log/cabin
Distribution: All
Posts: 1,167

Rep: Reputation: 45
If you mean you are running windows, and want a linux box to protect you- a very nice product is at www.clarkconnect.com. I bought 2 of them myself for my windows users at work.
 
Old 08-25-2004, 08:49 AM   #3
barisdemiray
Member
 
Registered: Sep 2003
Location: Ankara/Turkey
Distribution: Slackware
Posts: 155

Rep: Reputation: 30
I think you mean finding the attacker/intruder right? If so, then search for the terms honeypot and intrusion detection.
 
Old 08-25-2004, 05:57 PM   #4
JoAnywhere
Member
 
Registered: Oct 2003
Location: denver
Distribution: Debian
Posts: 97

Rep: Reputation: 15
John,
I think you need to look more closely at what you are looking for

A firewall will do little to prevent spam (spam comes in as part of email, which needs to be considered legitimate traffic for obvious reasons). There are strong reasons for NOT implementing server side spam solutions, and for implementing client side spam filters (one mans spam is another mans valuable data being one reason, the other being that spam filtering is moderately cpu intensive, and is better done in a distributed environment).

also, centralized virus protection is an interesting topic, and possibly not one that is best handled on the firewall. I personally prefer the approach of using client side virus protection with daily signature file updates (But that is a personal preference).

Remember, every additional piece of software you install on the firewall becomes a potential security risk. If you want to perform centralized spam filtering, and virus protection you may be better off installing a separate machine to perform these tasks.

Cheers
Jo
 
Old 08-26-2004, 07:22 AM   #5
chrism01
LQ Guru
 
Registered: Aug 2004
Location: Sydney
Distribution: Rocky 9.2
Posts: 18,358

Rep: Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751Reputation: 2751
As JoAnywhere implied, firewall/remote login, viruses and spam are separate issues and need to be dealt with as such.
You can use a firewall to protect against unauthorised access. You can either get a commercial piece of SW eg Smoothwall, or use iptables which is built-in to your Linux anyway and therefore free.
Most distros have admin menus that allow you to shut-off services you don't need. This is a good idea; if it's not running, it can't be exploited :-)
Make sure you have Tripwire installed (www.tripwire.org), although it usually comes with Linux.
You can test against your own box using nmap ( usually comes with Linux. or www.insecure.org)
For spam see spamassassin ( on your CD or at http://spamassassin.apache.org/ )
Linux is pretty much immune to Windows viruses/worms, but see http://cvs.sourceforge.net/viewcvs.p...e.txt?rev=HEAD for a list of products.
HTH
 
Old 08-26-2004, 10:05 AM   #6
JoAnywhere
Member
 
Registered: Oct 2003
Location: denver
Distribution: Debian
Posts: 97

Rep: Reputation: 15
Quote:
Originally posted by chrism01
As JoAnywhere implied, firewall/remote login, viruses and spam are separate issues and need to be dealt with as such.
You can use a firewall to protect against unauthorised access. You can either get a commercial piece of SW eg Smoothwall, or use iptables which is built-in to your Linux anyway and therefore free.
Chris,
or you can get smoothwall express which is the free GPL version from http://www.smoothwall.org

Cheers
Jo
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
remote login with X walterbyrd Linux - Networking 1 07-21-2005 11:21 PM
remote x login instead of local login mandrake-n00b Mandriva 0 04-22-2005 09:19 PM
remote login BRAHmS Linux - Networking 2 06-14-2004 02:51 AM
remote login namradi Linux - General 1 07-14-2003 05:39 PM
Linux Firewalls [iso firewalls] yoogie Linux - Networking 3 01-28-2002 06:56 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:06 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration