Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Linux as a firewall 3

Status
Not open for further replies.

rphips

IS-IT--Management
Sep 12, 2003
590
US
I was thinking of setting up a Linux system as a firewall but I don't know too much about it. Does anybody know where I can locate information on how to.

bob
 
Linux is an excellent firewall (trust me i speak from experience.) Despite it being much harder to get past the linux firewall you can enable dynamic i.p.'s so if anyone portscans you, buy the time they even think about trying to get in your server your i.p. will have changed.
I support your move to linux and am sick and tired of windows poor security and horendously overcharged prices.
If you like linux then please buy a copy (if you have the cash of course and are impressed with the service you get from it) as they are extremely cheap.
regards Net_buster
 
well thanks netbuster and if I like it I will sure buy it.

bob
 
This may be of interest to you, I was in the same situation a while ago and chose to install Smoothwall - for someone like yourself I could not reccommend a better product - and its feee!

thread83-552072
 
Thanks ISMJ
I will diffently check it out.



bob

Jones' Law
The man who can smile when things go wrong has thought of someone he can blame it on.
 
Any suggestions on how to build it iseriescodepoet



bob

Jones' Law
The man who can smile when things go wrong has thought of someone he can blame it on.
 
Read my Linux blog. I have entries on some of the things I have done.
I basically used slackware (debian might have been better) then used webmin to set up everything else. The posts start about here ( and I have a few entries on it. If you have any question feel free to email me. My contact info is on my main blog (
iSeriesCodePoet
iSeries Programmer/Lawson Software Administrator
[pc2]
See my progress to converting to linux.
 
will do and thanks ISeriesCodePoet



bob

Jones' Law
The man who can smile when things go wrong has thought of someone he can blame it on.
 
The evilsmiley.org firewalling box is a ghetto server (p2 220 with 64 megs of ram ) that i simply automated and completely stopped all network accessible services from working on it.

Add a basic firewalling and port forwarding IPTABLES script and you got yourself something that would cost you a bunch of money in a commercial product, that only cost me the price of the ghetto server ( which i found in the trash).

go linux.

_____________________________
when someone asks for your username and password, and much *clickely clickely* is happening in the background, know enough that you should be worried.
 
There is a wide range of Linux firewalls available (as packages for standard distributions or special firewall distributions)

If you are new to Linux you better choose a firewall distribution like... ipcop, astaro secure linux, trustix, or - werewolf from the makers of coyote linux. Werewolf has stateful firewall, VPN capabilities (interoperates with Windows vpn, it is very small...)
 
I would recommend SmoothWall ( I have used it for some time now. I am currently using v2 on :
166Mhz Pentium
48Mb RAM
2Gb HDD
2 x NE2000 NICs
All scrap kit thrown out by my employer. It lives up in the attic and I never go near it.
 
Does Smooth wall have VPN client software (not "pass through")? Looking for an alternative to Cisco PIX.
 
You guys should all take a look at m0n0wall.

(those are zero's not O's)

I have been using this linux based firewall and it works great. I used to use IPCop but i got tired of having to always edit the Scripts because the WebGui was kinda iffy. This software is all written in PHP and saves all its config files as XML's. You can run it on all sorts of embedded systems as well as an old Pentium class PC. You can even run it with just a bootable cd-rom version of it and a floppy disk, no hd required. No scripts to edit, just create all your firewall rules over the web gui. It has PPTP, IPSEC, all sorts of advanced NAT, wireles support, multiple interfaces. I am telling you this is probably the best software I have seen yet. I have used IPCop, Smoothwall, Mandrake security firwall, and I think monowall beats them all. Take a look at the link and see for yourselfs. If you have any questions let me know I am running this both at the office and at my home.

Regards,

Eddie Fernandez
CCNA, Network+, A+, MCP
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top