[KLUG Members] Firewall

members@kalamazoolinux.org members@kalamazoolinux.org
Fri, 20 Jun 2003 12:40:49 -0400


I spent a number of weeks trying to learn native iptables and found the packet/programming flow rather difficult. Shorewall makes iptables seem easy. The front end can be found at www.shorewall.net

Derek Cooper MCSE CCNA CNA A+
Network Instructor Olympia Career Training Institute
President World Class Infromation Systems
www.worldclassis.net

> Alright.
> Next step, where can I learn to set this up? That's all the below.
> 
> >>> Bruce Smith<bruce@armintl.com> 6/20/2003 11:44:33 AM >>>
> > 1. Does iptables support statefull filtering? 
> 
> Yes.
> 
> > I don't want to open 1024:65535 for FTP.
> 
> Neither do I, and I don't.
> 
> > 2. Does iptables support port redirection/nat?
> 
> Yes.
> 
> > I have one address from my ISP. It's bound to my RH9 box. 
> > I want to redirect ports(80,25,5900) to other server on 
> the lan (192.168.0.x).
> 
> No problem.
> 
> --------------------------------------------
> Bruce Smith                bruce@armintl.com 
> System Administrator / Network Administrator
> Armstrong International, Inc.
> Three Rivers, Michigan  49093  USA
> http://www.armstrong-intl.com/ 
> --------------------------------------------
> 
> _______________________________________________
> Members mailing list
> Members@kalamazoolinux.org 
> 
> _______________________________________________
> Members mailing list
> Members@kalamazoolinux.org
>