You are not logged in.
I connect to the net behind a firewalled router, I don't use OpenSSH or any other similar tools so no ports are open and hearing at boot time and my system is a GNU/Linux distro (Arch of course).
Is it really necessary to run a local firewall? I currently use ufw but I think I can safely shut it down and save some CPU cycles / RAM.
What you experts say?
Enjoying i3wm w/ lifebar + j4-dmenu-desktop + tab_windows / fish shell / Emacs / tmux / Konsole / KDE apps
Arch + Linux-libre kernel: ParabolaGNULinux.org
Offline
msx, there are already threads here about the subject. The search function is your friend
Here, I even did the work for you:
https://bbs.archlinux.org/viewtopic.php?id=100981
Last edited by nixpunk (2010-08-13 03:42:12)
Offline
msx, there are already threads here about the subject. The search function is your friend
Here, I even did the work for you:
Sorry bro, I already looked the wiki but there wasn't any info, thanks for the search.
Last edited by msx (2010-08-13 05:07:11)
Enjoying i3wm w/ lifebar + j4-dmenu-desktop + tab_windows / fish shell / Emacs / tmux / Konsole / KDE apps
Arch + Linux-libre kernel: ParabolaGNULinux.org
Offline
nixpunk wrote:msx, there are already threads here about the subject. The search function is your friend
Here, I even did the work for you:
Sorry bro, I already looked the wiki but there wasn't any info, thanks for the search.
I don't think so. The router itself is a firewall. I know my router runs busybox and uses iptables so I can do anything I want on the router that I could on my clients.
Unless of course there are specific rules you need to apply per client rather than on the router but that would be uncommon I guess.
Offline
Depends how much you trust the other hosts on the network behind the router with you.
And if you want to get extra paranoid, you might want to run an outbound firewall on your host to restrict what outbound traffic it is allowed to send. Most home/SOHO routers don't offer this.
Are you familiar with our Forum Rules, and How To Ask Questions The Smart Way?
BlueHackers // fscanary // resticctl
Offline