-
Senior Member
registered user

Originally Posted by
A. Jorge Garcia
If you have a spare NIC you may want to put it into the machine you already use to connect to the internet and get a cheap hub plug the other machines into that run a cable from the hub to the second NIC and run a iptables script and use that machine as your router/firewall.
OK, this sounds interesting. The PC with the NIC/HUB combo can still be used to surf and such or is it dedicated? What HUB do you recommend?
Regards,
Yes the machine acting as the router/firewall can still be used to surf or do whatever you want on it. The hub can be any brand as long as it works the one I use here is about 4 years old and only 10mb speed it has to have had tetra-bytes of data that has went through it you would want a 100mb at least I don't think you get one under that speed anymore at least not around here when I was looking around for one but my new dvd burner sort of ended that plan and now it looks like I got a bad HD in one of my machines so it's going even further on the back burner so to speak. Anyway back to the subject just get a 100mb hub the brand does not really matter get the two nics in one machine and run an iptables script for the NAT (Network Address Translation) they are a couple of packages in Debian that will do this that you can install with apt-get they are Firestarter, Bastille Linux and what I use Arno's Iptables it is a script that you have to install it is fairly easy to setup and should pretty much work with changing a couple of settings in the configuration file if necessary and setting the permissions on the files as recommended in the instructions. Firestarter is a gnome based app that will run in KDE and is just about as point and click as you can get the Bastille Linux in addition to the router/firewall is a hardening script that sets up your machine with security in mind at all times.
And if you decide to go with the Arno's (maybe the others as well never used them long enough to find out) script you will want to edit the file /etc/init.d/klogd and make sure you have the setting KLOGD="-c 4" in the file to disable the messages that will be sent to the console by the firewall blocking all the windows machines on your network scanning your machine to make a connection because of all the junk MS enables by default, you have to restart the klog daemon with /etc/init.d/klogd restart for the changes to take effect.
Similar Threads
-
By jjohnson0000 in forum Hdd Install / Debian / Apt
Replies: 4
Last Post: 06-10-2005, 03:15 AM
-
By JustinSL in forum Networking
Replies: 6
Last Post: 04-25-2005, 02:38 PM
-
By Neuling in forum Networking
Replies: 1
Last Post: 02-13-2005, 11:28 PM
-
By gandalf1967 in forum Networking
Replies: 2
Last Post: 09-02-2004, 02:45 PM
-
By Slimboy in forum Hardware & Booting
Replies: 2
Last Post: 03-20-2003, 12:40 AM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules

Windows XP, Vista, 8.1, Linux Knoppix, Office XP, (6 CDS)
$10.00

KNOPPIX 9.1 Linux Install & Live DVD 32bit & 64bit
$19.99

Knoppix Live GNU Linux System 9.1 on Bootable CD / DVD / USB Flash Drive
$5.99

KNOPPIX USB DVD OS , BEST OF ALL HIGHLY RECOMENDED
$11.99

Knoppix Linux Bootable OS v8.6 "Original Live Operating System" 16G USB Stick
$20.85

Knoppix Linux Bootable OS v8.6 "Original Live Operating System" 32G USB Stick
$21.42

VINTAGE SOFTWARE | KNOPPIX STD 0.1 (SECURITY TOOLS DISTRIBUTION)
$7.57

Knoppix NSM 1.2
$8.00

Hamshack Live DVD-ROM
$7.00

Knoppix 5.0.1 ULTRA RARE Linux DVD - Linux Pro Extra August 2006
$33.62