LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 06-20-2006, 02:14 PM   #1
sarajevo
Member
 
Registered: Apr 2005
Distribution: Debian, OpenBSD,Fedora,RedHat
Posts: 228
Blog Entries: 1

Rep: Reputation: 31
Kernel preparation for network gateway--needed documents


Hi all,

at my home I have four computers, and I decided to use one with two NICs as dedicated gateway for my home LAN.

I know that I should exclude all services which I do not need, so I am asking all of you out there is there some good manual, howto or something else to instruct me to read in order to understand how to prepare kernel for this specific task, because the gateway will be fist line of defence of my home network. I am asking only for good reading on this topic.


Thanks in advance

Regards
 
Old 06-21-2006, 02:18 PM   #2
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
Quote:
Originally Posted by sarajevo
Hi all,

at my home I have four computers, and I decided to use one with two NICs as dedicated gateway for my home LAN.

I know that I should exclude all services which I do not need, so I am asking all of you out there is there some good manual, howto or something else to instruct me to read in order to understand how to prepare kernel for this specific task, because the gateway will be fist line of defence of my home network. I am asking only for good reading on this topic.


Thanks in advance

Regards
i found this: http://www.stanford.edu/~fenn/linux/

but honestly, there really isn't that much to it IMHO (of course it depends on what exactly you want the gateway to do)... if you decide to ask more specific questions i'd be glad to help you out if i can...

just my ...
 
Old 06-23-2006, 05:09 AM   #3
sarajevo
Member
 
Registered: Apr 2005
Distribution: Debian, OpenBSD,Fedora,RedHat
Posts: 228

Original Poster
Blog Entries: 1

Rep: Reputation: 31
Thanks, at first moment I was wondering am I asking very strange or difficult because nobody answering me ...
so more specific I want to make linux router( gateway ) for my home network, Gateway will be debian based , because I like debian, and I am going use it for gateway's operating system

;gateway;---------;switch;======;internal computers;

so I know that I should prepare kernel on gateway machine in order to exclude all necessary services and make it thin as possible, I am hoping you understand what I writing about.

So I googled and conceptually I know what to do but I just need some docs, howts, or whatever else in order to read and prepare ( first myself ) my getaway to be fully compliant and good barrier to protect my internal network.
Books, links, howts, .... related to firewals, kernel preparations, service management are welcomed.

Thanks in advance
 
Old 06-23-2006, 06:59 AM   #4
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
if the only thing you want it to be is a router, then you don't need to have any services running on it... you just need to learn iptables...

http://wiki.linuxquestions.org/wiki/Iptables

http://iptables-tutorial.frozentux.n...-tutorial.html
 
Old 06-23-2006, 07:37 AM   #5
Capt_Caveman
Senior Member
 
Registered: Mar 2003
Distribution: Fedora
Posts: 3,658

Rep: Reputation: 69
Quote:
Originally Posted by sarajevo
so I know that I should prepare kernel on gateway machine in order to exclude all necessary services and make it thin as possible, I am hoping you understand what I writing about.
Services aren't built into the kernel, so you don't need to recompile the kernel to turn them on or off. Most versions of Linux either use a control script or utility for turning services on or off. but the services themselves are usually executable binaries that you can run from the command line.

However, you can perform kernel hardening to prevent things like buffer overflows. There are several links to kernel hardening tools in the Security References thread near the top of the forum, if that's what you're looking for.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
gateway setting ./network-scripts/ifcfg-eth1 and ./network joshfields Linux - Networking 1 04-29-2012 04:27 AM
OpenOffice Can not open documents across network awtoc123 SUSE / openSUSE 21 10-06-2009 02:10 PM
network PROBLEM left compiling kernel 2.6.15.4--help needed! oser Fedora 1 02-24-2006 02:40 AM
Need Help For RHCE preparation vikrambhimbar Linux - Certification 2 08-31-2005 06:17 PM
Vclass preparation mimithebrain Linux - General 3 08-30-2004 01:24 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:35 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration