Re: Need advice about breakin attempt

From: Sybren Stuvel (sybrenUSE_at_YOURthirdtower.com.imagination)
Date: 07/01/05


Date: Fri, 1 Jul 2005 08:47:50 +0200

BlackTopBum enlightened us with:
> I don't use iptables as I prefer something more stable than software
> - an hardware firewall.

And what do you think runs on this hardware? There are even hardware
firewalls that run Linux with iptables...

> And, I can change my kernel without having to go through re-doing of
> iptables and the kernel set up.

Same here. I wrote a proper firewall script that's really easy to
configure with a separate configuration file. As soon as I turn on my
box after installing a new kernel, it kicks in without me having to do
anything at all. What's your problem?

Sybren

-- 
The problem with the world is stupidity. Not saying there should be a
capital punishment for stupidity, but why don't we just take the
safety labels off of everything and let the problem solve itself? 
                                             Frank Zappa


Relevant Pages

  • RE: Software/Hardware Firewall
    ... difference between iptables on al Linux box or a device devoted to just ... Subject: Software/Hardware Firewall ... Cisco Pix, Netscreen, and I believe the Watch Guard as well as others. ... hardware and the software has limited interaction with the end user. ...
    (Security-Basics)
  • Re: Linux for an older PC
    ... But that doesn't mean that "there is no firewall". ... up your firewall, just use iptables. ... If you're using NAT for IPv4 and no IPv6 at all, ... The problem with the world is stupidity. ...
    (alt.os.linux)
  • Re: Need advice about breakin attempt
    ... > and iptables on a harddrive) solution. ... If you argue that your solution is preferable to mine because the ... hardware and software are better tuned to each other and the task at ... The problem with the world is stupidity. ...
    (alt.os.linux)
  • Re: Feedback solicited - best way to harden a mail/web server?
    ... Was the system protected by a properly configured firewall? ... it's not a bad "starting point" and it can generate an IPtables rule ... > nor is there a web or ftp server; aside from that I haven't tried to secure ... Before I'll install some nifty application ...
    (comp.os.linux.security)
  • Re: CPU runing at 100%, help
    ... Could be hardware - but.. ... Clean up and find out.. ... using Windows XP "prettifications". ... You should at least turn on the built in firewall. ...
    (microsoft.public.windowsxp.perform_maintain)