You are not logged in.
Pages: 1
I need help on configuring my iptables, so that it allows a computer on the network with an IP address "192.168.0.102 connect to the linux box and disallow any other computers.
thanks
Seto--
Offline
how extensive a ruleset are you looking for?
Do you want the machine to be able to get out to other machines besides the one?
What services do you want exposed?
Here is a rather robust iptables script..
I added the allow _only at the top of it just for you. It allows only incoming from the machine...cenrtain outgoing (and return based on outgoing..for updates and things like that) to any host is enabled..
modify to your hearts content.
*wink*
*note:It was a quick edit. make sure you modify the vars at the top to what you need.
http://cactuswax.net/~eliott/temp/iptables_regular.txt
rename to iptables.sh and run with
sh iptables.sh
test rules to make sure they are acceptable...
then
/etc/rc.d/iptables save
if you save before testing, even a hard reboot will not save you..
"Be conservative in what you send; be liberal in what you accept." -- Postel's Law
"tacos" -- Cactus' Law
"t̥͍͎̪̪͗a̴̻̩͈͚ͨc̠o̩̙͈ͫͅs͙͎̙͊ ͔͇̫̜t͎̳̀a̜̞̗ͩc̗͍͚o̲̯̿s̖̣̤̙͌ ̖̜̈ț̰̫͓ạ̪͖̳c̲͎͕̰̯̃̈o͉ͅs̪ͪ ̜̻̖̜͕" -- -̖͚̫̙̓-̺̠͇ͤ̃ ̜̪̜ͯZ͔̗̭̞ͪA̝͈̙͖̩L͉̠̺͓G̙̞̦͖O̳̗͍
Offline
you could always try gShield to create an iptables config - that's what i used
Offline
Pages: 1