Re: Debian Firewalls?

From: Juha Siltala (jsiltala_at_gmx.net)
Date: 01/21/04


Date: Wed, 21 Jan 2004 19:45:03 GMT

In article <bumc31$j7kf6$1@ID-203300.news.uni-berlin.de>, Matt Bostock wrote:

> Which firewall would you recommend for Debian? I tried APF which I have
> experience with, but it doesn't get on with Debian too well.

It makes no difference. The "firewall" is iptables, which is internal to
Linux, not Red Hat or Debian or any other distro. If you cannot write sane
iptables rules by hand (I sure can't), use Firestarter or something.

-- 
Juha Siltala
http://www.edu.helsinki.fi/activity/people/jsiltala/


Relevant Pages

  • Re: Firewall packages (was: All these open ports)
    ... It seems like most people here just hack "iptables" directly. ... There's also a Debian "firewall" mailing list, ... whereas with the Windows firewalls you get whatever is there ...
    (Debian-User)
  • Re: Debian Firewalls?
    ... On 2004-01-21, Matt Bostock wrote: ... > Which firewall would you recommend for Debian? ... but it doesn't get on with Debian too well. ... Very easy to install and the shorewall web site is a model of ...
    (alt.os.linux)
  • Re: some reality about iptables, please
    ... >>the script which can only be run by a root user. ... but it could re-inforce the fact that maybe running your iptables ... "I'm a packet filtering interface not a firewall tool." ... Generally Debian systems run at init runlevel 3 (this is a change if ...
    (Debian-User)
  • Re: Feedback solicited - best way to harden a mail/web server?
    ... Was the system protected by a properly configured firewall? ... it's not a bad "starting point" and it can generate an IPtables rule ... > nor is there a web or ftp server; aside from that I haven't tried to secure ... Before I'll install some nifty application ...
    (comp.os.linux.security)
  • Re: EMERGENCY - need to secure my server against an ongoing SPAMMER
    ... computer with a broadband connection. ... that IP range will prevent that spammer from wasting your systems ... This approach eventually makes your firewall machine so busy it has ... A better approach is to use IPTables to deny ALL inbound attempts to ...
    (Fedora)