Re: IPChains



On 25 Nov 2006, in the Usenet newsgroup comp.os.linux.networking, in article
<1164506159.356706.277980@xxxxxxxxxxxxxxxxxxxxxxxxxxxx>, David wrote:

Sorry still fighting it out and learning quickly thanks to much help.

Curious why you are using older applications. IPCHAINS were replaced
by iptables back in 1999.

Regarding IPChains, how can you say only allow outgoing connections to
this port, and allow any incomming connections from this IP?

http://www.iptables.org/documentation/HOWTO/

which gets you to Rusty Russell's site and seven very good HOWTOs. Then
there is

-rw-rw-r-- 1 gferg ldp 85507 Aug 20 2001 Firewall-HOWTO
-rw-rw-r-- 1 gferg ldp 113901 Jul 5 2000 IPCHAINS-HOWTO
-rw-rw-r-- 1 gferg ldp 278012 Jul 23 2002 Security-Quickstart-HOWTO

which should be on your system. Briefly, on your 'output' chain, you can
specify '-s source_address -d destination_address port_number' and your
input chain '-s source_address -d destination_address'.

Old guy
.



Relevant Pages

  • Re: Prevent access to linux server when mac adress does not match ip adress
    ... Iptables has much more features than ipchain. ... Prior to the 2.2.x kernel, the firewall was controlled by "ipfwadm". ... introduced the IPCHAINS tool to control that. ... Often the upgrade is too big and bulky for the older ...
    (comp.os.linux.networking)
  • Re: IPChains with RH 9? "Protocol not available"
    ... Yes, iptables is way more versatile than ipchains, and ipchains ... is no longer supported in the redhat kernel by default. ... is RH 9 stock kernel still support ipchains? ...
    (RedHat)
  • Re: A Question On Ipchains Input Rules
    ... If RH72 allows using iptables instead of ipchains, ... return packets for any established connections, ... outbound SMTP sessions, you just allow outbound SMTP, and the ...
    (comp.os.linux.security)
  • Re: 3.5 Deployment Question
    ... Thanks David ... ... We had several standing applications targeting .NET 2.0--they didn't change ... You are correct--3.0/3.5 are simply additions to the framework... ... the ASP.NET site also contains the web service applications ...
    (microsoft.public.dotnet.framework.aspnet)
  • Re: one more nail to the coffin ?
    ... I agree with David completely. ... A PIM device with PIM applications you can't use is a disaster. ... built-in PIM apps fail ... ... Do the same thing on a Palm and it creates a new full-height line in the day ...
    (comp.sys.palmtops.pilot)