Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here. |
Notices |
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
Are you new to LinuxQuestions.org? Visit the following links:
Site Howto |
Site FAQ |
Sitemap |
Register Now
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
|
 |
06-20-2006, 02:14 PM
|
#1
|
Member
Registered: Apr 2005
Distribution: Debian, OpenBSD,Fedora,RedHat
Posts: 228
Rep:
|
Kernel preparation for network gateway--needed documents
Hi all,
at my home I have four computers, and I decided to use one with two NICs as dedicated gateway for my home LAN.
I know that I should exclude all services which I do not need, so I am asking all of you out there is there some good manual, howto or something else to instruct me to read in order to understand how to prepare kernel for this specific task, because the gateway will be fist line of defence of my home network. I am asking only for good reading on this topic.
Thanks in advance
Regards
|
|
|
06-21-2006, 02:18 PM
|
#2
|
LQ Guru
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870
|
Quote:
Originally Posted by sarajevo
Hi all,
at my home I have four computers, and I decided to use one with two NICs as dedicated gateway for my home LAN.
I know that I should exclude all services which I do not need, so I am asking all of you out there is there some good manual, howto or something else to instruct me to read in order to understand how to prepare kernel for this specific task, because the gateway will be fist line of defence of my home network. I am asking only for good reading on this topic.
Thanks in advance
Regards
|
i found this: http://www.stanford.edu/~fenn/linux/
but honestly, there really isn't that much to it IMHO (of course it depends on what exactly you want the gateway to do)... if you decide to ask more specific questions i'd be glad to help you out if i can...
just my  ...
|
|
|
06-23-2006, 05:09 AM
|
#3
|
Member
Registered: Apr 2005
Distribution: Debian, OpenBSD,Fedora,RedHat
Posts: 228
Original Poster
Rep:
|
Thanks, at first moment I was wondering am I asking very strange or difficult because nobody answering me ...
so more specific I want to make linux router( gateway ) for my home network, Gateway will be debian based , because I like debian, and I am going use it for gateway's operating system
;gateway;---------;switch;======;internal computers;
so I know that I should prepare kernel on gateway machine in order to exclude all necessary services and make it thin as possible, I am hoping you understand what I writing about.
So I googled and conceptually I know what to do but I just need some docs, howts, or whatever else in order to read and prepare ( first myself ) my getaway to be fully compliant and good barrier to protect my internal network.
Books, links, howts, .... related to firewals, kernel preparations, service management are welcomed.
Thanks in advance 
|
|
|
06-23-2006, 07:37 AM
|
#5
|
Senior Member
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658
Rep:
|
Quote:
Originally Posted by sarajevo
so I know that I should prepare kernel on gateway machine in order to exclude all necessary services and make it thin as possible, I am hoping you understand what I writing about.
|
Services aren't built into the kernel, so you don't need to recompile the kernel to turn them on or off. Most versions of Linux either use a control script or utility for turning services on or off. but the services themselves are usually executable binaries that you can run from the command line.
However, you can perform kernel hardening to prevent things like buffer overflows. There are several links to kernel hardening tools in the Security References thread near the top of the forum, if that's what you're looking for.
|
|
|
All times are GMT -5. The time now is 04:35 PM.
|
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.
|
Latest Threads
LQ News
|
|