FC as network firewall.

l'eau leau at mediacult.com
Wed Jan 26 18:18:48 UTC 2005


I used ARNO IP table to handle the firewall filtering (NAT and IP 
forwarding). It is pretty straithforward installation.
Here are links about ARNO filering:
http://rocky.molphys.leidenuniv.nl/

http://freshmeat.net/projects/iptables-firewall/


I am not an expert and it is very simple to install (follow his instructions),
Here are basic overall information:

- his configuration file is in /etc/iptables-firewall.conf
- his script is in /etc/rc.d/rc.iptables
- it uses /sbin/iptables
- edit the configuration file with your IPs

- add his script to the boot-initialization process (so you don't have to 
trigger it each time your machine reboots:
the initialization file during boot process is in:
/etc/rc.d/rc.local

- check that it is running by running:
/etc/rc.d/rc.iptables status


Laurence

At 09:55 AM 1/26/2005, you wrote:
>Whats do you need?
>
>First, take an eye on to multiple HOW-TOs.
>
>In www.netfilter.org you can find many documentation about IPTABLES and 
>the extensions.
>
>In www.lartc.org you can find many documentation about routing, bandwidth, 
>etc...
>
>After that (three or four days to review docs and know what do you need 
>and some tests with your FC) ask us again. don't you?
>
>Good luck.
>
>Franco escribió:
>
>>Hi, i have a PIV 2.7 Ghz with 768 MB with 2 NIC card,
>>can someone help me to configure it as firewall for my
>>public subnet?
>>Thanks.
>
>--
>    Samuel Díaz García
>     Director Gerente
>ArcosCom Wireless, S.L.L.
>
>mailto:samueldg at arcoscom.com
>http://www.arcoscom.com
>móvil: 651 93 72 48
>tlfn/fax: 956 70 13 15
>
>
>
>--
>fedora-list mailing list
>fedora-list at redhat.com
>To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list

01010010101000100110101101101011110000101101110011111100010001001010001001110111110101110000100

My domain name mediacult is been used by spammers to forge new email addresses.
Please discard any email coming from mediacult that is not (including the 
"real name" I defined before <... at ...>):
- l'eau <leau  @ mediacult . com>
- Support and Help <support @ mediacult . com>
- What do you need? <service  @ mediacult . com>
- Stephan S. <stephan  @ mediacult . com>

For example:
if you receive an email from "Joe <leau @ mediacult . com>" or
from "Jane<support @ mediacult . com>" these are forged email addresses not 
coming from me.

01010010101001110111110101110001001101011011010111100001010100010011010111111000100010010100010  





More information about the users mailing list