Results 1 to 5 of 5

Thread: basic firewall rules for iptables

Hybrid View

  1. #1
    Junior Member
    Join Date
    Feb 2004
    Posts
    2

    basic firewall rules for iptables

    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004

  2. #2
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Germany
    Posts
    297

    Re: basic firewall rules for iptables

    Quote Originally Posted by zebul666
    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004
    Hi,

    feel free to send a patch to debian-knoppix@linuxtag.org for saveconfig ...

    The sources can be found on: http://developer.linuxtag.net/knoppix/

    cu

    Fabian

  3. #3
    Member registered user
    Join Date
    Jan 2003
    Posts
    44
    Hi Fabianx, I have done an firewall script generator in Xdialog for Kurumin, he works like an wizard: ask some questions and afther that generate the firewal script.

    http://www.guiadohardware.net/linux/...irewall-ativar

  4. #4
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Europe
    Posts
    148
    looks like a worthy addition to the CD...

  5. #5
    Junior Member registered user
    Join Date
    Mar 2004
    Posts
    27
    I agree.

    While a firewall script isn't so necessary for just booting Knoppix from the CD drive... AFTER A HD INSTALL it would make perfect sense to have one already set up.

    I know a few people who are clusers (clueless users) who have HD installs, and there is no firewall set up for them by default.

    As far as Knoppix install is concerned, it has to be the easiest Linux install I have ever done. So two thumbs up....!

    Now for this firewall please.........

Similar Threads

  1. iptables configuration
    By DieselDriver in forum Networking
    Replies: 3
    Last Post: 03-03-2005, 02:44 PM
  2. Konqueror Rules!
    By lark in forum The Lounge
    Replies: 1
    Last Post: 03-28-2004, 03:55 AM
  3. Need help with iptables
    By Markus in forum Networking
    Replies: 6
    Last Post: 01-24-2004, 07:27 PM
  4. IPtables script, submitted for consideration
    By Dave_Bechtel in forum Hdd Install / Debian / Apt
    Replies: 1
    Last Post: 10-11-2003, 05:27 PM
  5. QTParted Rules!!!
    By JockVSJock in forum Hdd Install / Debian / Apt
    Replies: 0
    Last Post: 07-14-2003, 03:39 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Vintage IBM personal computer keyboard picture

Vintage IBM personal computer keyboard

$149.99



Vintage Apple Disk II Analog Card 820-0007 picture

Vintage Apple Disk II Analog Card 820-0007

$50.00



VINTAGE, HARMAN KARDON, MULTIMEDIA COMPUTER SPEAKERS Tested Good picture

VINTAGE, HARMAN KARDON, MULTIMEDIA COMPUTER SPEAKERS Tested Good

$25.00



386DX Intel A80386DX-25 IV SX543 386 25Mhz vintage CPU GOLD picture

386DX Intel A80386DX-25 IV SX543 386 25Mhz vintage CPU GOLD

$13.99



Vintage Classic Apple Macintosh System Boot Install Disk Floppy/CD *Pick Version picture

Vintage Classic Apple Macintosh System Boot Install Disk Floppy/CD *Pick Version

$10.39



Vintage Dream Writer NTS 325 Computer Basic Language Notebook “Untested “ picture

Vintage Dream Writer NTS 325 Computer Basic Language Notebook “Untested “

$30.00



Drakware ADB2USB - vintage Apple ADB to USB keyboard adapter picture

Drakware ADB2USB - vintage Apple ADB to USB keyboard adapter

$29.95



NEW Manufacture OLD STYLE Oval 3 Prong Power Cord HP style 125V 7A 875W Vintage picture

NEW Manufacture OLD STYLE Oval 3 Prong Power Cord HP style 125V 7A 875W Vintage

$39.95



VINTAGE 1992 NEWPORT SYSTEMS 700-0002-001 REV E GREAT CONDITION  picture

VINTAGE 1992 NEWPORT SYSTEMS 700-0002-001 REV E GREAT CONDITION

$99.99



Vintage Comfort Keyboard Systems Ergomagic Mechanical AT/PS2 Keyboard picture

Vintage Comfort Keyboard Systems Ergomagic Mechanical AT/PS2 Keyboard

$134.99