Results 1 to 5 of 5

Thread: basic firewall rules for iptables

  1. #1
    Junior Member
    Join Date
    Feb 2004
    Posts
    2

    basic firewall rules for iptables

    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004

  2. #2
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Germany
    Posts
    297

    Re: basic firewall rules for iptables

    Quote Originally Posted by zebul666
    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004
    Hi,

    feel free to send a patch to debian-knoppix@linuxtag.org for saveconfig ...

    The sources can be found on: http://developer.linuxtag.net/knoppix/

    cu

    Fabian

  3. #3
    Member registered user
    Join Date
    Jan 2003
    Posts
    44
    Hi Fabianx, I have done an firewall script generator in Xdialog for Kurumin, he works like an wizard: ask some questions and afther that generate the firewal script.

    http://www.guiadohardware.net/linux/...irewall-ativar

  4. #4
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Europe
    Posts
    148
    looks like a worthy addition to the CD...

  5. #5
    Junior Member registered user
    Join Date
    Mar 2004
    Posts
    27
    I agree.

    While a firewall script isn't so necessary for just booting Knoppix from the CD drive... AFTER A HD INSTALL it would make perfect sense to have one already set up.

    I know a few people who are clusers (clueless users) who have HD installs, and there is no firewall set up for them by default.

    As far as Knoppix install is concerned, it has to be the easiest Linux install I have ever done. So two thumbs up....!

    Now for this firewall please.........

Similar Threads

  1. iptables configuration
    By DieselDriver in forum Networking
    Replies: 3
    Last Post: 03-03-2005, 02:44 PM
  2. Konqueror Rules!
    By lark in forum The Lounge
    Replies: 1
    Last Post: 03-28-2004, 03:55 AM
  3. Need help with iptables
    By Markus in forum Networking
    Replies: 6
    Last Post: 01-24-2004, 07:27 PM
  4. IPtables script, submitted for consideration
    By Dave_Bechtel in forum Hdd Install / Debian / Apt
    Replies: 1
    Last Post: 10-11-2003, 05:27 PM
  5. QTParted Rules!!!
    By JockVSJock in forum Hdd Install / Debian / Apt
    Replies: 0
    Last Post: 07-14-2003, 03:39 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Amiga 4000TX computer motherboard picture

Amiga 4000TX computer motherboard

$2643.23



Mini External OLED AMIGA Gotek Floppy Drive Emulator For Amiga 500/500+/600/1200 picture

Mini External OLED AMIGA Gotek Floppy Drive Emulator For Amiga 500/500+/600/1200

$37.32



Amiga 500 Gotek Custom Mount USB Floppy Emulator - Complete Kit with Gotek picture

Amiga 500 Gotek Custom Mount USB Floppy Emulator - Complete Kit with Gotek

$65.00



13 Available Samsung SFD-321B Floppy Drive Modified for Commodore Amiga picture

13 Available Samsung SFD-321B Floppy Drive Modified for Commodore Amiga

$30.00



SIDKick Pico Commodore 64 and 128 (C64 / C128) - MOS SID 6581 / 8580 Replacement picture

SIDKick Pico Commodore 64 and 128 (C64 / C128) - MOS SID 6581 / 8580 Replacement

$19.99



Commodore Amiga Decal picture

Commodore Amiga Decal

$2.99



Aluminum Metal Amiga Logo sticker picture

Aluminum Metal Amiga Logo sticker

$6.00



Commodore Amiga A3000 Computer - WORKING - New Battery - Great Condition picture

Commodore Amiga A3000 Computer - WORKING - New Battery - Great Condition

$2379.15



TeensyROM Cartridge for Commodore 64/128: MIDI, Fastload, Emulation, and Network picture

TeensyROM Cartridge for Commodore 64/128: MIDI, Fastload, Emulation, and Network

$65.00



Commodore Amiga Stereo Sound Sampler Techno Sound Turbo Rare Limited US Seller picture

Commodore Amiga Stereo Sound Sampler Techno Sound Turbo Rare Limited US Seller

$59.99