LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 01-12-2008, 11:18 AM   #1
paperplane
Member
 
Registered: Dec 2007
Location: england
Distribution: slackware 11
Posts: 35

Rep: Reputation: 15
new router and security questions


hello, ive just bought a new router to allow me to connect to the internet via linux, it is a Netgear DG834.

it has got an 'SPI' firewall, and a 'NAT' firewall.
is this security adiquate on its own? or do i need look into other measures?
 
Old 01-12-2008, 12:49 PM   #2
jeff_k
Member
 
Registered: Jan 2008
Location: San Diego, CA USA
Distribution: Debian / Ubuntu
Posts: 51

Rep: Reputation: 17
The router will provide NAT (network address translation) so that your single IP address provided by your ISP can be shared to access the internet by all of your LAN PCs. You need to configure the router firewall properly (SPI is stateful packet inspection, it can do various filtering functions if you desire), read the manual for the options. This does not really have anything to do with linux per se, you could have PCs running any OS behind the router, just as long as they are accessing the internet with TCP/IP, etc. they will be serviced by the router/firewall. In my case, I preferred the added configurability of a linux (iptables) firewall/router, so I took an old PC and converted it into a router/firewall box by installing linux on it. There appear to be lots of helpful folks here if you choose to go that route.
 
Old 01-12-2008, 01:00 PM   #3
Brian1
LQ Guru
 
Registered: Jan 2003
Location: Seymour, Indiana
Distribution: Distribution: RHEL 5 with Pieces of this and that. Kernel 2.6.23.1, KDE 3.5.8 and KDE 4.0 beta, Plu
Posts: 5,700

Rep: Reputation: 65
Being it is not a wireless router then the defaults should be fine. The defaults have no open ports or one cannot access the router from the internet side. Only thing is change the default password on them just in case someone can get in.

Brian
 
Old 01-12-2008, 01:51 PM   #4
paperplane
Member
 
Registered: Dec 2007
Location: england
Distribution: slackware 11
Posts: 35

Original Poster
Rep: Reputation: 15
hi jeff and brian,

the router was recommended to me by a friend, and actually runs linux and iptables,

this page has some interesting info:

http://www.suburbia.com.au/~dan/

i need to read the manual, but as always, its finding the time.

brian,

i purposely bought the wired version of this router (not the wireless), because my computer is always in the same place, and i dont see the point of over complicating things. i like to keep things as simple as possible and perhaps minimise the risk of exposing myself to new dangers. thanks for the heads up on the password too, i saw it earlier, but kind of forgot about it, i will change it later tonight.
 
Old 01-12-2008, 06:34 PM   #5
jeff_k
Member
 
Registered: Jan 2008
Location: San Diego, CA USA
Distribution: Debian / Ubuntu
Posts: 51

Rep: Reputation: 17
I wasn't aware from their description that this was one of their open-source routers. A little embarrassing on my part, I purchased a Netgear open-source router with the intent to load in my own modified code, and I never got around to doing it. The code that came with it worked pretty well. I believe that a website that will help you a lot is the openwrt.org group, this is the wireless router webpage for modiying code on wireless routers. As you said, the challenge is finding the time. Regarding purchased hardware, many if not most routers run a skinny version of linux, but they are not reconfigurable. The open-source versions allow you to recompile and then flash your own homegrown code into the routers, if you are so inclined.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Security on a Netgear Router phantom_cyph Linux - Wireless Networking 13 02-22-2007 01:01 PM
Security for linksys Router w0nderb0y Linux - Wireless Networking 8 07-20-2006 10:21 PM
router/AP security true_atlantis Linux - Hardware 1 08-26-2005 03:55 AM
[Security Questions] Last Login, how good is this feature for security breach info? t3gah Linux - Security 2 06-14-2005 01:02 AM
router security features linuxhippy Slackware 4 04-25-2005 07:50 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 05:29 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration