You are not logged in.

#1 2008-12-07 14:36:51

matto
Member
From: Münster/germany
Registered: 2004-06-03
Posts: 88
Website

iptables / firewall

Hi!
few week ago somebody tried to exploit my machine and i decided to use a firewall.
( http://bbs.archlinux.org/viewtopic.php?id=59550 )
Iptables syntax is quit hard (for me) so i used firewall builder to compile some rules.
I startet them , saved them with /etc/rc.d/iptables save and finally added iptables to my rc.conf.

iptables -L

tells me that they are active.
good work i thought wink , but how do i know if my rules work the way they should work?
Are there any tools to check that? nmap tells me that there are more open ports then there should be.
(but i think this is due to nmap ran via loopback on 127.0.0.1)
greeting matto


// DAMNiAM //

Offline

#2 2008-12-07 16:20:37

Cheesebaron
Member
From: Denmark
Registered: 2008-10-31
Posts: 65
Website

Re: iptables / firewall

http://www.hackerwatch.org/probe/

This might tell you something.

Offline

#3 2008-12-08 20:42:18

matto
Member
From: Münster/germany
Registered: 2004-06-03
Posts: 88
Website

Re: iptables / firewall

Tanks! yes, it does!


// DAMNiAM //

Offline

#4 2008-12-08 20:45:50

Procyon
Member
Registered: 2008-05-07
Posts: 1,819

Re: iptables / firewall

I get confused by iptables too. I just edit /etc/iptables/iptables.conf directly and run /etc/rc.d/iptables restart. Is there anything bad about that?

Offline

#5 2008-12-08 22:18:12

daf666
Member
Registered: 2007-04-08
Posts: 470
Website

Re: iptables / firewall

did u try configuring iptables with webmin? looks very clear and easy.

Offline

#6 2008-12-09 12:01:21

matto
Member
From: Münster/germany
Registered: 2004-06-03
Posts: 88
Website

Re: iptables / firewall

I recommend firewall builder. A gui to configure various firewalls, it outputs iptable-rules.
but i don´t think there´s something bad about configuring iptables by hand!
http://www.pcflank.com/scanner1.htm
is a good site to check your machine too.
greetings matto


// DAMNiAM //

Offline

#7 2008-12-09 12:23:35

patroclo7
Member
From: Bassano del Grappa, ITALY
Registered: 2006-01-11
Posts: 915

Re: iptables / firewall

The arno-iptables-firewall in the AUR provides nice defaults and high configurability.


Mortuus in anima, curam gero cutis

Offline

Board footer

Powered by FluxBB