store | blogs | forums | twitter | facebook | wiki | mailing lists | downloads | support portal
Atomic Secure Linux
It is currently Wed Jun 19, 2013 1:30 pm

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic Share/Bookmark  [ 9 posts ] 
Author Message
 Post subject: firewalling rulesets
Unread postPosted: Fri Apr 24, 2009 7:19 pm 
Offline
Forum Regular
Forum Regular

Joined: Sun Mar 29, 2009 6:52 pm
Posts: 348
I think it would be really nice of you to give out a firewall template for a standard web server.
With protections etc. And a bit of documentation on that.

_________________
Hello IT.
Phone : Blah Blah ....
Have you tried turning it on and off again ?
Phone : Blah Blah ....
....
I'm sorry, are you from the Past ?!
http://www.youtube.com/watch?v=-E4fm4Wqego


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Mon Apr 27, 2009 3:59 pm 
Offline
Forum Regular
Forum Regular

Joined: Mon Oct 29, 2007 6:51 pm
Posts: 613
Check out APF - its pretty good

http://www.rfxn.com/projects/advanced-policy-firewall/

I think its also available in atomic
yum install apf


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Tue Apr 28, 2009 8:09 am 
Offline
Forum Regular
Forum Regular

Joined: Sun Mar 29, 2009 6:52 pm
Posts: 348
I use iptables in my fw. Apf is just a change in the interface ... Nothing more.
I only suggested that to the guys cause I believe this could come in handy for many people.
Especially some rules for denial of service.

_________________
Hello IT.
Phone : Blah Blah ....
Have you tried turning it on and off again ?
Phone : Blah Blah ....
....
I'm sorry, are you from the Past ?!
http://www.youtube.com/watch?v=-E4fm4Wqego


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Tue Apr 28, 2009 10:10 am 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin

Joined: Wed Dec 31, 1969 8:00 pm
Posts: 7458
Location: earth
Yeah I agree, we did cover some standard rule groups like you're talking about in the book. Its definitely something we'll be working on in future ASL modules.


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Tue Apr 28, 2009 8:06 pm 
Offline
Forum Regular
Forum Regular

Joined: Sun Mar 29, 2009 6:52 pm
Posts: 348
scott wrote:
Yeah I agree, we did cover some standard rule groups like you're talking about in the book. Its definitely something we'll be working on in future ASL modules.


What Book ?
Yeah. I think since ASL deserves it. You have done a very nice job in hardening security and missing something so important is a pity.

_________________
Hello IT.
Phone : Blah Blah ....
Have you tried turning it on and off again ?
Phone : Blah Blah ....
....
I'm sorry, are you from the Past ?!
http://www.youtube.com/watch?v=-E4fm4Wqego


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Tue Apr 28, 2009 11:46 pm 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin

Joined: Wed Dec 31, 1969 8:00 pm
Posts: 7458
Location: earth
The book we wrote that is on the front page of the website :P "Troubleshooting Linux Firewalls" by Addison-Westley-Prentice-Hall


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Wed Apr 29, 2009 12:42 am 
Offline
Forum Regular
Forum Regular

Joined: Sun Mar 29, 2009 6:52 pm
Posts: 348
scott wrote:
The book we wrote that is on the front page of the website :P "Troubleshooting Linux Firewalls" by Addison-Westley-Prentice-Hall


May I please have a GPL pdf of it ? hehe Just kidding. I'll check it out ;)

_________________
Hello IT.
Phone : Blah Blah ....
Have you tried turning it on and off again ?
Phone : Blah Blah ....
....
I'm sorry, are you from the Past ?!
http://www.youtube.com/watch?v=-E4fm4Wqego


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Wed Apr 29, 2009 7:12 am 
Offline
Forum Regular
Forum Regular

Joined: Wed Jan 02, 2008 3:21 pm
Posts: 515
Location: United Kingdom
"Troubleshooting Linux Firewalls" is great and has really helped me understand the deeper principles of data flow into/out of networks, helping improve office network security as well as on servers in the wild. Insights, tips and guides in this book have convinced (and helped) me to hand-roll firewall/iptables rules as it is by far and away the most flexible approach (for me at least).


Top
 Profile  
 
 Post subject: Re: firewalling rulesets
Unread postPosted: Wed Apr 29, 2009 11:27 am 
Offline
Forum Regular
Forum Regular

Joined: Mon Oct 29, 2007 6:51 pm
Posts: 613
want to send me a copy or two - every 10 licenses of ASL you get a book :p


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic Share/Bookmark  [ 9 posts ] 

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group