Gentoo Archives: gentoo-security

From: Meder Bakirov <bakirov@××××××××.kg>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] firewall suggestions?
Date: Wed, 07 Jan 2004 08:08:14
Message-Id: 200401071303.55723.bakirov@transfer.kg
In Reply to: [gentoo-security] firewall suggestions? by Pooh Sun Tzu
1 Hello,
2
3 Also, you may look at giptables (www.giptables.org) - [info from giptables'
4 site] a free set of shell scripts that helps you generate iptables rules for
5 Linux 2.4.x and newer kernels. It is very easy to configure and at present,
6 designed to run on hosts with one or two network cards. It doesn't require
7 you to install any additional components to make it work with your GNU/Linux
8 system. All you need to set-up a very secure firewall for your GNU/Linux
9 machines is iptables and GIPTables Firewall.
10
11 Main Features
12
13 GIPTables Firewall has many advantage compared to its competitors.
14
15 * It is easy to install and configure.
16 * It does not require you to install any additional component to make it
17 work.
18 * It only needs iptables to run.
19 * It is using NAT and masquerading for sharing internet access where you
20 don't have enough addresses.
21 * It is using the stateful packet filtering (connection tracking) feature
22 of iptables.
23 * It is automatically doing all kinds of network address translation.
24 * It is using rate-limited connection and logging capability.
25 * It provides good protection against all kind of TCP SYN-flooding Denial
26 of Service attacks.
27 * It provides good protections against IP spoofing.
28 * It provides TCP packets heath check.
29 * It has a flexible and extensible infrastructure.
30 * It is easy to adjust and modify for your needs.
31 * It is small and does not use a lot of memory.
32 * It merges cleanly with all native GNU/Linux programs.
33 * It is well written and very powerful.
34 * It covers all needs in a highly secure server environment.
35 * It is Free Software, open source and easy.
36 * It is powered by GNU/Linux.
37
38 GIPTables is already in portage (masked)
39
40 On Tuesday 06 January 2004 22:27, Pooh Sun Tzu wrote:
41 > Greetings,
42 > I have been with gentoo for about 3 months now, but only recently
43 > decided I needed a firewall. Don't ask, as I still feel simply not
44 > having ports open is just as good as a firewall that blocks them.
45 > Regardless, I would love your suggestions on firewalls avalaible for
46 > Gentoo. Also, if you could provide a brief explaination instead of just
47 > a name, that would make my day much easier. Thanks!
48 >
49 > regards,
50 > Pooh Sun Tzu
51 >
52 >
53 > --
54 > gentoo-security@g.o mailing list
55
56 --
57 Rgrds, .coder!
58
59 My Intellect Is The Power! (c) The Prodigy
60
61
62 --
63 gentoo-security@g.o mailing list