search for guarddog, guidedog, they are frontends for the iptables, those are a firewall in linux. a verry good one at that.
Hi,
I've installed Knoppix and connected to the net. I understood there's no firewall and that by default 'all ports are closed'. However, (and excuse me for being such a newbie), I don't understand if this means the computer is actually secure or not.
I'm not running a server. My computer is a pure client. If all ports are closed, and are only opened when I willingly open them to access a network resource, that should be secure enough, right?
Or can this be exploited?
In short, what should I do to get decent security using my Knoppix box (installed to the HD) on the network?
search for guarddog, guidedog, they are frontends for the iptables, those are a firewall in linux. a verry good one at that.
It means if you have a service running then you are not accepting any outside connections on the port if you have no service running on a port it will be closed by default anyways and there should be no way to connect to it.Originally Posted by ezuk
Not quite sure what you mean here if the machine is just a client then you should not have to open anything. For instance if you want to connect to the internet (http) you do not have to open up port 80 you are doing the connecting to someones service not the other way around you only need to open the port when you want to provide the service to other people.I'm not running a server. My computer is a pure client. If all ports are closed, and are only opened when I willingly open them to access a network resource, that should be secure enough, right?
Or can this be exploited?
Install a firewall as suggested in the post above another one you may want to look at is firestarter. If you have not already done it some packages you may want to remove to prevent the startup of services once the package gets upgraded.In short, what should I do to get decent security using my Knoppix box (installed to the HD) on the network?
Code:samba, lisa, dhcp3-server, shaper, apache, brltty, ntp, nis, ssh, bind9, portmap, nfs, distccd, mysql-server, nvtv
You can check for open ports at Gibson Research by using the Shield's Up port scanner and a link on the Debian web site.
http://www.debian.org/doc/manuals/se...-debian-howto/
Thank you very much for both of your replies. You've helped me. :P

IBM Power 9 Linux L922, 2x6-Core CPU / No RAM / 2 x 1400W PSU / Rails - 9008-22L
$606.50
1U Open Source Router Firewall X10SLH-N6-ST031 E3-1240 V3 6x 10GB Ethernet 16GB
$350.00
Proxmox Linux VM VPS Xeon Server /w 512GB RAM 28TB HDD for Virtual Machine Cloud
$1647.00
Start9 Server Pure 32GB 4TB Intel i7 Node StartOS — Box + PSU
$699.00
1U Open Source Router Firewall 6x 10GB Ethernet X10SLH-N6-ST031 E3-1240 V3 32GB
$429.00
Toshiba Magnia SG20 VPN Linux server Web server (No HDD, *Read*) -
$60.00
Ubuntu 26.04 Linux Desktop PC, 6-Core i5, up to 32GB RAM + 2TB SSD, Dell 7060
$369.99
Linux Mint AI Deep Learning PC Workstation Ryzen 5 24gb Ram 16gb Tesla P100 GPU
$599.99
Microsoft SQL Server 2025 Standard 32 Core Unlimited User CALs CoA Authentic
$388.00
Buffalo BRXL-PUS6U3B, 4K UHD, firmware Flashed, Unlocked, LibreDrive, MakeMKV
$249.99