LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-09-2010, 06:03 PM   #1
drManhattan
Member
 
Registered: Aug 2010
Location: Warsaw, Poland
Distribution: Ubuntu 10.04 LTS on IBM Lenovo R61e, RHEL5-6,SLES10-11
Posts: 262

Rep: Reputation: 1
free firewall testing


Hi

I would like to test my firewall rules. Is there some app or web service where I can do that ?

thx for help.

Last edited by drManhattan; 11-09-2010 at 06:16 PM.
 
Old 11-09-2010, 08:43 PM   #2
barriehie
Member
 
Registered: Nov 2010
Distribution: Debian Lenny
Posts: 136
Blog Entries: 1

Rep: Reputation: 23
Quote:
Originally Posted by drManhattan View Post
Hi

I would like to test my firewall rules. Is there some app or web service where I can do that ?

thx for help.
grc might can help in your endeavor.
https://www.grc.com/x/ne.dll?bh0bkyd2
 
Old 11-10-2010, 01:15 PM   #3
salasi
Senior Member
 
Registered: Jul 2007
Location: Directly above centre of the earth, UK
Distribution: SuSE, plus some hopping
Posts: 4,070

Rep: Reputation: 897Reputation: 897Reputation: 897Reputation: 897Reputation: 897Reputation: 897Reputation: 897
...that's a good answer (one of several possible) provided that you mean 'external testing for holes' rather than 'testing from inside, to ensure that all of my service work', which is a rather different problem...
 
Old 11-10-2010, 01:26 PM   #4
repo
LQ 5k Club
 
Registered: May 2001
Location: Belgium
Distribution: Arch
Posts: 8,529

Rep: Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899Reputation: 899
You can use nmap
http://www.derkeiler.com/Service/PortScan/

Kind regards
 
Old 11-10-2010, 03:28 PM   #5
szboardstretcher
Senior Member
 
Registered: Aug 2006
Location: Detroit, MI
Distribution: GNU/Linux systemd
Posts: 4,278

Rep: Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693Reputation: 1693
To do firewall testing you have to first know whether you will be testing from inside or from outside. Then you have to decide whether you will be whitebox testing (knowing and specifically targetting rules) or black box testing (without targeting specific rules / a scatter technique )

Next, you should make sure that anyone that uses your firewall is aware that you are doing it -- ie, don't do it during peak business hours or anything.

Once you have that figured out, and I am assuming that you do own this network and firewall, you should use various scanning techniques to ensure that your traffic is filtered. Most are advanced, but have simple starting points. Also, vulnerability scanning will usually get you a nice easy to read report of what goes through and what is found.

Some popular scanners and testing suites are: nmap, gfi languard, nessus, hping, and scapy.
 
Old 11-10-2010, 04:11 PM   #6
aus9
LQ 5k Club
 
Registered: Oct 2003
Location: Western Australia
Distribution: Icewm
Posts: 5,827

Rep: Reputation: Disabled
hi

re: grc ....and to test your iptables you need to be using a bridged firewall if you have a router/modem that has its own firewall active.

Otherwise, grc and pcflank and similar external sites are testing your modem/firewall
 
Old 11-12-2010, 03:37 AM   #7
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 681Reputation: 681Reputation: 681Reputation: 681Reputation: 681Reputation: 681
Moved: This thread is more suitable in Linux Security and has been moved accordingly to help your question get the exposure it deserves.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Testing ipTables Firewall Jim Bengtson Linux - Networking 2 03-26-2010 09:18 AM
Testing SIP port behind NAT/Firewall Khawk Linux - Networking 3 09-01-2008 12:44 AM
Fedora 9 Linux, can you tell me if there is free antivirus and free Firewall gginis Linux - Software 5 06-03-2008 09:45 AM
Firewall Testing aquatux Linux - Security 4 09-10-2007 04:47 PM
Testing IPTABLES Firewall 1jamie Linux - Security 6 08-28-2003 08:17 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:27 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration