public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: James Stull <rivitir@gmail.com>
To: gigli@swipnet.se
Cc: gentoo-user@lists.gentoo.org
Subject: Re: [gentoo-user] simple firewall
Date: Sun, 5 Apr 2009 21:34:08 -0400	[thread overview]
Message-ID: <c1dd97640904051834o6ec5215dwccadda8981594e0@mail.gmail.com> (raw)
In-Reply-To: <49D8A84B.3020402@swipnet.se>

[-- Attachment #1: Type: text/plain, Size: 1328 bytes --]

Have you tried Firewall Builder? You can use Firewall Builder to make all
the rules for iptables.



On Sun, Apr 5, 2009 at 8:47 AM, gigli <gigli@swipnet.se> wrote:

> Peter Humphrey skrev:
> > On Sunday 05 April 2009 11:41:55 gigli wrote:
> >
> >> i will give shorewall a new try and hope i'll make better progress thsi
> >> time
> >
> > My gateway machine has three interfaces and uses shorewall to protect
> them.
> > If you like I could tar up /etc/shorewall and send it to you. I've had to
> > create macros for several services and put them in /usr/share/shorewall,
> > but if you run "shorewall try /etc/shorewall" it'll tell you which you
> > need. I made them by copying others and changing bits.
> >
> > The three interfaces are the external network (a DSL modem), the internal
> > wired network (an Ethernet switch) and a wireless network (an access
> > point).
> >
> > I don't suppose my setup is the acme of elegance or wit, but it seems to
> > work. The rules file is 195 lines long.
> >
> Hi peter
>
> I would be happy if you mailed me the tar. I have only one interface and
> need to protect my computer while connected through openvpn, i guess
> openvpn goes directly through my pfsense box bothways and it would be
> nice to stay protected then. Or have i misunderstood that?
>
> Martin
> gigli@swipnet.se
>
>

[-- Attachment #2: Type: text/html, Size: 1873 bytes --]

  reply	other threads:[~2009-04-06  1:34 UTC|newest]

Thread overview: 10+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2009-04-04 22:24 [gentoo-user] simple firewall gigli
2009-04-04 23:45 ` forgottenwizard
2009-04-05  9:22   ` Florian Philipp
2009-04-05 10:41     ` gigli
2009-04-05 11:15       ` Peter Humphrey
2009-04-05 12:47         ` gigli
2009-04-06  1:34           ` James Stull [this message]
2009-04-04 23:48 ` Roy Wright
2009-04-06 14:25 ` Andreas Niederl
2009-04-06 19:18 ` Liviu Andronic

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=c1dd97640904051834o6ec5215dwccadda8981594e0@mail.gmail.com \
    --to=rivitir@gmail.com \
    --cc=gentoo-user@lists.gentoo.org \
    --cc=gigli@swipnet.se \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox