public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-user] Is this firewall safe?
@ 2009-04-24 15:28 Marco
  2009-04-24 16:59 ` Eric Martin
  2009-04-24 17:00 ` Chris Frederick
  0 siblings, 2 replies; 15+ messages in thread
From: Marco @ 2009-04-24 15:28 UTC (permalink / raw
  To: gentoo-user

Hi all,

I set up my first firewall on my notebook (not running any services
reachable from outside) using iptables. Since I am new to the topic,
could you please verify if the output of 'iptables -L -v' is
considered to be a safe firewall? Thanks!

Chain INPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source
destination
    0     0 ACCEPT     all  --  lo     any     anywhere
anywhere
    0     0 ACCEPT     all  --  eth0   any     anywhere
anywhere            state RELATED,ESTABLISHED
    0     0 REJECT     tcp  --  eth0   any     anywhere
anywhere            reject-with tcp-reset
    0     0 REJECT     udp  --  eth0   any     anywhere
anywhere            reject-with icmp-port-unreachable
    0     0 DROP       udp  --  eth0   any     anywhere
anywhere            udp spt:bootps
    0     0 LOG        all  --  eth0   any     anywhere
anywhere            LOG level warning prefix `INPUT   '
    1    79 ACCEPT     all  --  wlan0  any     anywhere
anywhere            state RELATED,ESTABLISHED
    0     0 REJECT     tcp  --  wlan0  any     anywhere
anywhere            reject-with tcp-reset
    0     0 REJECT     udp  --  wlan0  any     anywhere
anywhere            reject-with icmp-port-unreachable
    0     0 DROP       udp  --  wlan0  any     anywhere
anywhere            udp spt:bootps
    0     0 LOG        all  --  wlan0  any     anywhere
anywhere            LOG level warning prefix `INPUT   '

Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source
destination
    0     0 LOG        all  --  any    any     anywhere
anywhere            LOG level warning prefix `FORWARD '
    0     0 LOG        all  --  any    any     anywhere
anywhere            LOG level warning prefix `FORWARD '

Chain OUTPUT (policy ACCEPT 5 packets, 1691 bytes)
 pkts bytes target     prot opt in     out     source
destination
    0     0 ACCEPT     all  --  any    lo      anywhere
anywhere
    0     0 LOG        all  --  any    eth0    anywhere
anywhere            LOG level warning prefix `OUTPUT  '
    1    52 LOG        all  --  any    wlan0   anywhere
anywhere            LOG level warning prefix `OUTPUT  '



^ permalink raw reply	[flat|nested] 15+ messages in thread

end of thread, other threads:[~2009-04-27 20:05 UTC | newest]

Thread overview: 15+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-04-24 15:28 [gentoo-user] Is this firewall safe? Marco
2009-04-24 16:59 ` Eric Martin
2009-04-24 17:53   ` Marco
2009-04-27 19:35     ` Eric Martin
2009-04-24 17:00 ` Chris Frederick
2009-04-24 17:05   ` Hazen Valliant-Saunders
2009-04-24 18:20     ` Marco
2009-04-24 17:23   ` Daniel Troeder
2009-04-24 18:40     ` Marco
2009-04-24 19:38       ` Daniel Troeder
2009-04-24 21:28         ` Chris Frederick
2009-04-27 18:56           ` Daniel Troeder
2009-04-27 20:03             ` Alan McKinnon
2009-04-24 18:18   ` Marco
2009-04-24 18:26     ` Marco

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox