LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-31-2003, 05:55 PM   #1
311Sam
Member
 
Registered: Nov 2003
Location: waco, tx
Distribution: slackware & kubuntu
Posts: 108

Rep: Reputation: 15
Linux As A Firewall


Hey guys its my n00b ass again.

Im wanting to use linux and a small computer as a firewall See
Any way im wondering what is the best firewall program to use out there? I know of firewall builder, ipcop, Smoothwall, and Coyote Linux. They all seem good but which one the is the best? Which one is the easiest to use? Also ill be using mandrake 9.2. When i go to install it on the computer should i check the box that says that the computer will be used as a router/ firewall during the setup screen? Also what kind of cables do i need to use? Im connected to the internet via a cable modem. So do i just run a crossover cable from the modem to the firewall and a crossover cable from my computer to the firewall?

Now, the thing im really having trouble with is how this whole hardware firewall stuff works. I have been using sygate personal software firewall for some time now. When something trys to access the internet sygate will ask me if i want to let it. But how does a hardware firewall do this?


Thanks for any info!!
 
Old 12-31-2003, 06:55 PM   #2
Joey.Dale
Member
 
Registered: Jun 2003
Location: Tampa, Fl
Distribution: Gentoo, Slackware
Posts: 828

Rep: Reputation: 39
Google for

Linux
Router
Project
 
Old 12-31-2003, 07:37 PM   #3
Mathieu
Senior Member
 
Registered: Feb 2001
Location: Montreal, Quebec, Canada
Distribution: RedHat, Fedora, CentOS, SUSE
Posts: 1,403

Rep: Reputation: 46
All firewall software in Linux with Kernel 2.4 are nothing more than front-ends to iptables.
iptables is the firewall subsystem for Kernel 2.4

Nothing is better than doing everything by hand.
So if you want to learn more about iptables, go to netfilter.
http://www.netfilter.org/

But if you want some links to firewall software and scripts.
http://firegate.sourceforge.net/
http://firestarter.sourceforge.net/
http://www.shorewall.net/
http://www.ipcop.org/
http://www.fwbuilder.org/
http://muse.linuxmafia.org/gshield/

Quote:
I have been using sygate personal software firewall for some time now. When something trys to access the internet sygate will ask me if i want to let it. But how does a hardware firewall do this?
It doesn't.
A firewall should always be able to make these decisions without human intervention.
A good rule of thumb is to block everything and allow access to certain ports, ips, etc.

As for the cables, the cable that connects your computer to your cable modem is a straight-through cable.
The cable that connects two computers is a crossover cable.
 
Old 01-01-2004, 03:54 AM   #4
ugge
Senior Member
 
Registered: Dec 2000
Location: Gothenburg, SWEDEN
Distribution: OpenSUSE 10.3
Posts: 1,028

Rep: Reputation: 45
You could also try the freesco linux.
http://www.freesco.org/
A one floppy linux router, dchp, firewall, dial up, dial in, ethernet router. This run right of the floppy.
 
Old 01-01-2004, 04:58 AM   #5
bones996
Member
 
Registered: Sep 2003
Location: Pennsylvania
Distribution: Debian Squeeze
Posts: 106

Rep: Reputation: 15
For understanding firewalls the book Linux Firewalls is a good read - if a bit long . It explains almost evrything about iptables & gives some good default examples that are really usefull in setting up a good firewall (after tweaking it to your needs).
 
Old 01-01-2004, 02:49 PM   #6
fishynet
LQ Newbie
 
Registered: Jan 2004
Location: Atlanta, GA.
Distribution: Debian
Posts: 5

Rep: Reputation: 0
I recommend the IPCop firewall distro ( http://www.ipcop.org ), it's easy to install, comes with features such as Squid caching proxy, Snort Intrusion Detection, A web Interface, and is very secure/stable.
 
Old 01-02-2004, 06:11 AM   #7
311Sam
Member
 
Registered: Nov 2003
Location: waco, tx
Distribution: slackware & kubuntu
Posts: 108

Original Poster
Rep: Reputation: 15
Quote:
Originally posted by fishynet
I recommend the IPCop firewall distro ( http://www.ipcop.org ), it's easy to install, comes with features such as Squid caching proxy, Snort Intrusion Detection, A web Interface, and is very secure/stable.
How does smoothwall compair to ipcop? I like the way the smoothwall interface looks, looks simple and easy to use. Does smoothwall have squid?
 
Old 01-02-2004, 01:13 PM   #8
fishynet
LQ Newbie
 
Registered: Jan 2004
Location: Atlanta, GA.
Distribution: Debian
Posts: 5

Rep: Reputation: 0
IPcop is a fork of smoothwall...

Smoothwall has 2 versions, commercial, and GPL

IPcop only has 1, GPL, this means all the devolopment/features goes into the free version.
 
Old 01-04-2004, 01:46 PM   #9
grizzly
Member
 
Registered: Jun 2003
Distribution: Slackware 9.1, Solaris 9, and IPcop
Posts: 101

Rep: Reputation: 15
I am using ipcop now, moved over from smoothwall for the reason given in the above post. I have been happy with both of them.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
BSD Firewall vs Linux Firewall ? rootlinux Linux - Security 5 08-29-2007 07:38 AM
how to m$ win client+firewall to linux sshd and use linux to access the M$ computer c_mitulescu Linux - Networking 7 05-14-2004 12:56 PM
Linux As a Firewall shaundyc Linux - Security 8 05-07-2004 11:56 AM
A Firewall for linux marsques Linux - Security 7 01-08-2004 12:41 PM
Linux Firewall preguin1 Linux - Security 7 04-05-2001 04:14 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:49 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration