Results 1 to 5 of 5

Thread: basic firewall rules for iptables

  1. #1
    Junior Member
    Join Date
    Feb 2004
    Posts
    2

    basic firewall rules for iptables

    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004

  2. #2
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Germany
    Posts
    297

    Re: basic firewall rules for iptables

    Quote Originally Posted by zebul666
    hello,
    while it is pretty easy to configure an ADSL/pppoe connection, there is no rules for iptables.

    It would have make sense to set up a basic firewall while configuring an adsl connection, would'nt it ?

    And furthermore, maybe i'am wrong but when i save my KNOPPIX configuration it does _not_ include the /var/lib/iptables/active and /var/lib/iptables/inactive files. Hey the /var/lib/iptables dir does not even exist by default. You have to create it !!

    for example
    Code:
    # Generated by iptables-save v1.2.9 on Fri Feb 20 14:00:16 2004
    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD DROP [0:0]
    :OUTPUT ACCEPT [474:71447]
    :firewall - [0:0]
    -A INPUT -j firewall
    -A firewall -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A firewall -i ! ppp0 -m state --state NEW -j ACCEPT
    -A firewall -j DROP
    COMMIT
    # Completed on Fri Feb 20 14:00:16 2004
    Hi,

    feel free to send a patch to debian-knoppix@linuxtag.org for saveconfig ...

    The sources can be found on: http://developer.linuxtag.net/knoppix/

    cu

    Fabian

  3. #3
    Member registered user
    Join Date
    Jan 2003
    Posts
    44
    Hi Fabianx, I have done an firewall script generator in Xdialog for Kurumin, he works like an wizard: ask some questions and afther that generate the firewal script.

    http://www.guiadohardware.net/linux/...irewall-ativar

  4. #4
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Europe
    Posts
    148
    looks like a worthy addition to the CD...

  5. #5
    Junior Member registered user
    Join Date
    Mar 2004
    Posts
    27
    I agree.

    While a firewall script isn't so necessary for just booting Knoppix from the CD drive... AFTER A HD INSTALL it would make perfect sense to have one already set up.

    I know a few people who are clusers (clueless users) who have HD installs, and there is no firewall set up for them by default.

    As far as Knoppix install is concerned, it has to be the easiest Linux install I have ever done. So two thumbs up....!

    Now for this firewall please.........

Similar Threads

  1. iptables configuration
    By DieselDriver in forum Networking
    Replies: 3
    Last Post: 03-03-2005, 02:44 PM
  2. Konqueror Rules!
    By lark in forum The Lounge
    Replies: 1
    Last Post: 03-28-2004, 03:55 AM
  3. Need help with iptables
    By Markus in forum Networking
    Replies: 6
    Last Post: 01-24-2004, 07:27 PM
  4. IPtables script, submitted for consideration
    By Dave_Bechtel in forum Hdd Install / Debian / Apt
    Replies: 1
    Last Post: 10-11-2003, 05:27 PM
  5. QTParted Rules!!!
    By JockVSJock in forum Hdd Install / Debian / Apt
    Replies: 0
    Last Post: 07-14-2003, 03:39 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


LSI 9305-16i SATA SAS 12Gbs RAID Controller PCIe 3.0 x8 IT-Mode 4* 8643 SATA picture

LSI 9305-16i SATA SAS 12Gbs RAID Controller PCIe 3.0 x8 IT-Mode 4* 8643 SATA

$229.99



Dell R630 8SFF 2.4Ghz 12-Core 128GB H330 RAID 10GB RJ-45 NIC 2x750W PSU 8x Trays picture

Dell R630 8SFF 2.4Ghz 12-Core 128GB H330 RAID 10GB RJ-45 NIC 2x750W PSU 8x Trays

$430.04



Dell R630 8SFF 2.4Ghz 20-Core 128GB H730 RAID 10GB RJ-45 NIC 2x750W PSU 8x Trays picture

Dell R630 8SFF 2.4Ghz 20-Core 128GB H730 RAID 10GB RJ-45 NIC 2x750W PSU 8x Trays

$455.04



ACASIS 2.5/3.5 inch 2 Bay SATA USB 3.0 Hard Drive Disk HDD SSD Enclosure 4 RAID picture

ACASIS 2.5/3.5 inch 2 Bay SATA USB 3.0 Hard Drive Disk HDD SSD Enclosure 4 RAID

$58.99



Inspur LSI 9300-8i Raid Card 12Gbps HBA HDD Controller High Profile IT MODE picture

Inspur LSI 9300-8i Raid Card 12Gbps HBA HDD Controller High Profile IT MODE

$15.98



LSI MegaRAID 9361-8i 12Gb PCIe 8-Port SAS/SATA RAID 1Gb w/BBU/CacheVault/License picture

LSI MegaRAID 9361-8i 12Gb PCIe 8-Port SAS/SATA RAID 1Gb w/BBU/CacheVault/License

$39.95



ORICO Multi Bay RAID Hard Drive Enclosure USB 3.0/ Type-C For 2.5/3.5'' HDD SSDs picture

ORICO Multi Bay RAID Hard Drive Enclosure USB 3.0/ Type-C For 2.5/3.5'' HDD SSDs

$82.49



LSI MegaRAID 9361-8i 12Gbps PCIe 3 x8 SATA SAS 3 8 Port RAID + BBU & CacheVault picture

LSI MegaRAID 9361-8i 12Gbps PCIe 3 x8 SATA SAS 3 8 Port RAID + BBU & CacheVault

$39.00



NEW LSI MEGARAID SAS 9361-8i 12GB/s SAS + SATA RAID CONTROLLER CARD PCIe x8 3.0 picture

NEW LSI MEGARAID SAS 9361-8i 12GB/s SAS + SATA RAID CONTROLLER CARD PCIe x8 3.0

$99.00



Yottamaster 4Bay RAID RGB Hard Drive Enclosure Type B Fr 2.5'' 3.5

Yottamaster 4Bay RAID RGB Hard Drive Enclosure Type B Fr 2.5'' 3.5" SATA HDD SSD

$149.99