public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-user] iptables
@ 2009-07-16  3:32 Dave
  2009-07-16  8:41 ` Marco
  0 siblings, 1 reply; 30+ messages in thread
From: Dave @ 2009-07-16  3:32 UTC (permalink / raw
  To: gentoo-user

Hello,
	I'm looking for a guide for iptables specifically for gentoo 2.6.
	I was also wondering if anyone was using apf "Advanced Policy
Firewall" on a gentoo 2008.0 2.6 machine?
Thanks.
Dave.




^ permalink raw reply	[flat|nested] 30+ messages in thread
* [gentoo-user] IPTABLES
@ 2015-12-22 21:45 siefke_listen
  2015-12-24 12:11 ` Andrew Savchenko
  2015-12-29 13:09 ` lee
  0 siblings, 2 replies; 30+ messages in thread
From: siefke_listen @ 2015-12-22 21:45 UTC (permalink / raw
  To: gentoo-user

[-- Attachment #1: Type: text/plain, Size: 495 bytes --]

Hello,

i try to run iptables, block bad ips and close the system. 

I want run firewall which block all INPUT, only ALLOW services i defined.
Ipset want to use to block spam ips, make it sure awesome as ever set rules 
manuell.

Im not so sure is okay, i has try and read but at end often i kick me out
from rootserver. So better ask what say profis of Gentoo. 

The Firewall Script > http://pastebin.com/b3305i41


Thank you for help & Nice Day
----------------
Silvio Siefke

[-- Attachment #2: Type: application/pgp-signature, Size: 473 bytes --]

^ permalink raw reply	[flat|nested] 30+ messages in thread
* [gentoo-user] Iptables
@ 2007-01-18 15:58 Fabrício L. Ribeiro
  2007-01-18 16:07 ` Daniel Pielmeier
                   ` (2 more replies)
  0 siblings, 3 replies; 30+ messages in thread
From: Fabrício L. Ribeiro @ 2007-01-18 15:58 UTC (permalink / raw
  To: gentoo-user

How can I install and run iptables (with conntrack and all other
modules) in a Gentoo 2006.1 box with kernel generated by genkernel?

I tried "emerge iptables", but when I type "iptables -F" I get
something like this:

FATAL: Module ip_tables not found.
iptables v1.3.5: can't initialize iptables table `filter': iptables
who? (do you need to insmod?)
Perhaps iptables or your kernel needs to be upgraded.

Thanks!

-- 
FABRÍCIO L. RIBEIRO

-- 
gentoo-user@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 30+ messages in thread
* [gentoo-user] iptables
@ 2005-08-29 23:44 John Dangler
  2005-08-30  1:31 ` Holly Bostick
  2005-08-30  1:42 ` W.Kenworthy
  0 siblings, 2 replies; 30+ messages in thread
From: John Dangler @ 2005-08-29 23:44 UTC (permalink / raw
  To: gentoo-user

I emerged firestarter (during which I got iptables), and forgot that I
didn't have iptables emerged prior.  I went into the kernel and selected (as
the doc I found suggests) all of the options as modules under iptables. (The
doc also says that if they are compiled as modules, I didn't need to
reboot).
I did add iptables to /etc/modules.autoload.d/kernel-2.6 (for subsequent
rebooting).

modprobe ip_tables results in:
FATAL: Error inserting ip_tables
(/lib/modules/2.6.12-gentoo-r9/kernel/net/ipv4/netfilter/ip_tables.ko):
Unknown symbol in module, or unknown parameter.

dmesg produces - 
ip_tables: disagrees about version of symbol skb_copy_files
ip_tables: Unknow symbol skb_copy_bits
ip_tables: Unknown symbol nf_register_sockopt
ip_tables: ip_tables: Unknown symbol nf_unregister_sockopt
ip_tables: Unknown symbol nf_unregister_sockopt

(I just found another doc that says to ONLY modprobe IF you haven't built
this as a module)
DOH!

I went back into the kernel config and removed all but the essential options
for iptables... (just iptables module) and rebuilt the kernel

A reboot (aside from losing my wireless), produced an error on boot loading
iptables.
no other text in dmesg points to the problem.

John D




-- 
gentoo-user@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 30+ messages in thread
* [gentoo-user] iptables
@ 2005-08-26  3:17 John Dangler
  2005-08-26  4:03 ` Eric Crossman
                   ` (2 more replies)
  0 siblings, 3 replies; 30+ messages in thread
From: John Dangler @ 2005-08-26  3:17 UTC (permalink / raw
  To: gentoo-user

I'm reading through the wiki doc on setting up iptables.  There is a section
there that sets up a file called firewall.sh
i've emerged iptables, but I don't have a file by that name on the system,
and it seems that running "/etc/init.d/iptables save" writes this file as
/var/lib/iptables/rules-save.  Is there a specific directory where this file
should be written so that running "/etc/init.d/iptables save" can see it?
Or can the rules-save file be edited and re-written? (It seems as though
running "/etc/init.d/iptables save" would just over-write rules-save).

Thanks for the input.

John D




-- 
gentoo-user@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 30+ messages in thread

end of thread, other threads:[~2015-12-29 13:28 UTC | newest]

Thread overview: 30+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-07-16  3:32 [gentoo-user] iptables Dave
2009-07-16  8:41 ` Marco
2009-07-16  8:43   ` Marco
2009-07-16 13:42     ` Alejandro
2009-07-16 14:55       ` Nevynxxx
2009-07-17 12:13       ` [gentoo-user] iptables James
  -- strict thread matches above, loose matches on Subject: below --
2015-12-22 21:45 [gentoo-user] IPTABLES siefke_listen
2015-12-24 12:11 ` Andrew Savchenko
2015-12-24 21:41   ` siefke_listen
2015-12-29 13:09 ` lee
2007-01-18 15:58 [gentoo-user] Iptables Fabrício L. Ribeiro
2007-01-18 16:07 ` Daniel Pielmeier
2007-01-18 16:09 ` Nelson, David (ED, PAR&D)
2007-01-19 11:10 ` Alan McKinnon
2007-01-19 12:56   ` Pete Pardoe
2007-01-19 13:33     ` Fabrício L. Ribeiro
2005-08-29 23:44 [gentoo-user] iptables John Dangler
2005-08-30  1:31 ` Holly Bostick
2005-08-30  2:36   ` John Dangler
2005-08-30  3:36     ` John Dangler
2005-08-30  4:54       ` John Dangler
2005-08-30  8:48         ` Hans-Werner Hilse
2005-08-30  9:43     ` Holly Bostick
2005-08-30  9:55       ` Neil Bothwick
2005-08-30 10:13         ` John Dangler
2005-08-30  1:42 ` W.Kenworthy
2005-08-26  3:17 John Dangler
2005-08-26  4:03 ` Eric Crossman
2005-08-26  4:22 ` A. Khattri
2005-08-26  8:49 ` Fernando Meira

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox