niXforums Forum Index
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   PreferencesPreferences   Log in to check your private messagesLog in to check your private messages   Log inLog in 
·  nixdoc.net ·  man pages ·  Linux HOWTOs ·  FreeBSD Tips ·  Forums
navigation Forum index » *nix » Linux » Distributions » Debian
IPtables front end
Post new topic   Reply to topic Page 1 of 1 [14 Posts] View previous topic :: View next topic
Author Message
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Thu Jul 20, 2006 1:30 pm    Post subject: IPtables front end Reply with quote

I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?


--
Regards
Stephen
Back to top
Guillaume
*nix forums addict


Joined: 10 Apr 2005
Posts: 71

PostPosted: Thu Jul 20, 2006 1:30 pm    Post subject: Re: IPtables front end Reply with quote

Stephen a écrit :
Quote:
I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?



Hi,

You can find fwbuilder http://www.fwbuilder.org
It's not so bad I think...

It's installed on a computer with X server, then it will automatically
copy the files and apply the change by "ssh" using a sshkey to prevent
password to be entered.

I'm not using it but I've tested it, and it sounds not too bad.

Regards
Guillaume


--
Guillaume
E-mail: silencer_<at>_free-4ever_<dot>_net
Blog: http://guillaume.free-4ever.net
----
Site: http://www.free-4ever.net


--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Jean-Sebastien Pilon
*nix forums beginner


Joined: 20 Jun 2006
Posts: 21

PostPosted: Thu Jul 20, 2006 1:40 pm    Post subject: RE: IPtables front end Reply with quote

Webmin has a module

Quote:
-----Original Message-----
From: Stephen [mailto:stephen.d.allen@gmail.com]
Sent: Thursday, July 20, 2006 9:19 AM
To: debian
Subject: IPtables front end

I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?


--
Regards
Stephen
Back to top
Liam O'Toole
*nix forums Guru Wannabe


Joined: 10 Apr 2006
Posts: 101

PostPosted: Thu Jul 20, 2006 2:20 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, 20 Jul 2006 09:28:46 -0400
"Jean-Sebastien Pilon" <jspilon@PENSON.CA> wrote:

Quote:
Webmin has a module

-----Original Message-----
From: Stephen [mailto:stephen.d.allen@gmail.com]
Sent: Thursday, July 20, 2006 9:19 AM
To: debian
Subject: IPtables front end

I'm looking for a front end to iptables that doesn't rely on having
X installed. Is there such a beast ?


--
Regards
Stephen



Shorewall[1] is excellent, both in terms of its feature set and the
quality of its documentation.

Excerpt from output of 'apt-cache show shorewall':

Shorewall allows you to describe your firewall/gateway
requirements using entries in a set of configuration files. It
reads those configuration files and, with the help of the
iptables utility, configures Netfilter to match your
requirements.

Shorewall supports a wide range of router/firewall/gateway
applications, traffic shaping and almost every type of VPN.

[1] http://shorewall.net

--

Liam


--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Thu Jul 20, 2006 3:20 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, Jul 20, 2006 at 03:26:50PM +0200 or thereabouts, Guillaume wrote:
Quote:
Stephen a écrit :
I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?



Hi,

You can find fwbuilder http://www.fwbuilder.org
It's not so bad I think...

Thanks I'm not using Xserver -- No GUI.

--
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
There's small choice in rotten apples.
-- William Shakespeare, "The Taming of the Shrew"
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Back to top
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Thu Jul 20, 2006 3:30 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, Jul 20, 2006 at 09:28:46AM -0400 or thereabouts, Jean-Sebastien Pilon wrote:
Quote:
Webmin has a module

I guess I should have mentioned terminal based. I don't use webmin.

Thanks anyway.

--
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Delay not, Caesar. Read it instantly.
-- Shakespeare, "Julius Caesar" 3,1

Here is a letter, read it at your leisure.
-- Shakespeare, "Merchant of Venice" 5,1

[Quoted in "VMS Internals and Data Structures", V4.4, when
referring to I/O system services.]
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Back to top
Guillaume
*nix forums addict


Joined: 10 Apr 2005
Posts: 71

PostPosted: Thu Jul 20, 2006 3:30 pm    Post subject: Re: IPtables front end Reply with quote

Stephen a écrit :
Quote:
On Thu, Jul 20, 2006 at 03:26:50PM +0200 or thereabouts, Guillaume wrote:
Stephen a écrit :
I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?


Hi,

You can find fwbuilder http://www.fwbuilder.org
It's not so bad I think...

Thanks I'm not using Xserver -- No GUI.


Sorry, I thought you mean no Xserver on the firewall...

So, this way, I recommand shorewall !!
It's nice and easy to use in older version.... so I new version it
should be better !!! ;-)

Regards
Guillaume


--
Guillaume
E-mail: silencer_<at>_free-4ever_<dot>_net
Blog: http://guillaume.free-4ever.net
----
Site: http://www.free-4ever.net


--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Thu Jul 20, 2006 3:30 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, Jul 20, 2006 at 03:11:30PM +0100 or thereabouts, Liam O'Toole wrote:
Quote:

Shorewall[1] is excellent, both in terms of its feature set and the
quality of its documentation.


Thanks Liam, this looks promising.

--
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
This night methinks is but the daylight sick.
-- William Shakespeare, "The Merchant of Venice"
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Back to top
claytonk@163.com
*nix forums beginner


Joined: 07 Jul 2006
Posts: 3

PostPosted: Thu Jul 20, 2006 3:40 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, 20 Jul 2006 09:19:03 -0400
Stephen <stephen.d.allen@gmail.com> wrote:

Quote:
I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?


--
Regards
Stephen

I think firehol is very powerful, configuration is via editing /etc/firehol.conf. Simple needs are really easy to setup, and firehol is capable of setting up a fully-functional router, which is one of the things I use it for.

Clayton


--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Bob McGowan
*nix forums beginner


Joined: 07 Mar 2006
Posts: 22

PostPosted: Thu Jul 20, 2006 5:40 pm    Post subject: Re: IPtables front end Reply with quote

As I don't know your level of expertise, but do expect there are many to
whom this could be useful, a link to a discussion of not just setting up
shorewall, but configuring a full gateway/router (dhcp, dns, etc.):

http://www.debian-administration.org/articles/263

Bob

Stephen wrote:
Quote:
On Thu, Jul 20, 2006 at 03:11:30PM +0100 or thereabouts, Liam O'Toole wrote:

Shorewall[1] is excellent, both in terms of its feature set and the
quality of its documentation.



Thanks Liam, this looks promising.



--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Thu Jul 20, 2006 5:50 pm    Post subject: Re: IPtables front end Reply with quote

On Thu, Jul 20, 2006 at 11:25:42PM +0800 or thereabouts, claytonk@163.com wrote:
Quote:

On Thu, 20 Jul 2006 09:19:03 -0400
Stephen <stephen.d.allen@gmail.com> wrote:

I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?


--
Regards
Stephen

I think firehol is very powerful, configuration is via editing /etc/firehol.conf. Simple needs are really easy to setup, and firehol is capable of setting up a fully-functional router, which is one of the things I use it for.

Hi:

I tried this after Shorewall gave me some issues. I guess I'm going to
ask a newbie question, but so be it.

After installation I'm given the following error;
# firehol start
# Stopping: /etc/default/firehol forbids it.

Now I followed along with a firehol config tutorial at;
<http://firehol.sourceforge.net/tutorial.html?>

and when I list my network interfaces I'm presented with the following;
1: lo: <LOOPBACK,UP> mtu 16436 qdisc noqueue
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
2: eth0: <BROADCAST,MULTICAST,UP> mtu 1500 qdisc pfifo_fastqlen 1000
link/ether 00:80:c6:f0:53:c6 brd ff:ff:ff:ff:ff:ff
3: sit0: <NOARP> mtu 1480 qdisc noop link/sit 0.0.0.0 brd 0.0.0.0

So am I correct in assuming that sit0 is my Internet side, and eth0 is
my Home/Lan ? I searched Google for 'sit0' and it appears to be a ipv6
thing -- is that assuption correct ?

I have my server in a DMZ through a broadband router/switch. So I assume
that eth0 would be my home side. Correct ?

Thanks.
--
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
A hundred years from now it is very likely that [of Twain's works] "The
Jumping Frog" alone will be remembered.
-- Harry Thurston Peck (Editor of "The Bookman"), January 1901.
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Back to top
Paul Johnson
*nix forums Guru


Joined: 25 Feb 2005
Posts: 554

PostPosted: Thu Jul 20, 2006 7:50 pm    Post subject: Re: IPtables front end Reply with quote

On Thursday 20 July 2006 06:19, Stephen wrote:
Quote:
I'm looking for a front end to iptables that doesn't rely on having X
installed. Is there such a beast ?

Shorewall might be what you're looking for.

--
Paul Johnson
Email and IM (XMPP & Google Talk): baloo@ursine.ca
Jabber: Because it's time to move forward http://ursine.ca/Ursine:Jabber
Back to top
Raghavendra Bhat
*nix forums beginner


Joined: 20 Jul 2006
Posts: 2

PostPosted: Fri Jul 21, 2006 3:10 am    Post subject: Re: IPtables front end Reply with quote

Stephen wrote:

Quote:
searched Google for 'sit0' and it appears to be a ipv6 thing -- is
that assuption correct?

It is the IPv6 interface, it shows up when you do an 'ifconfig -a'.

--
Raghavendra Bhat
Playfully doing something difficult, whether useful
or not, that is hacking -- Richard M. Stallman


--
To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
Back to top
Stephen Allen
*nix forums beginner


Joined: 05 Feb 2006
Posts: 46

PostPosted: Fri Jul 21, 2006 4:20 am    Post subject: Re: IPtables front end Reply with quote

On Fri, Jul 21, 2006 at 08:38:15AM +0530 or thereabouts, Raghavendra Bhat wrote:
Quote:
Stephen wrote:

searched Google for 'sit0' and it appears to be a ipv6 thing -- is
that assuption correct?

It is the IPv6 interface, it shows up when you do an 'ifconfig -a'.

Right you are -- Now I have to figure out how to setup Firehol for it.

sit0 Link encap:IPv6-in-IPv4
NOARP MTU:1480 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0
carrier:0
collisions:0 txqueuelen:0
RX bytes:0 (0.0 b) TX
bytes:0 (0.0 b)


--
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
So so is good, very good, very excellent good:
and yet it is not; it is but so so.
-- William Shakespeare, "As You Like It"
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Back to top
Google

Back to top
Display posts from previous:   
Post new topic   Reply to topic Page 1 of 1 [14 Posts] View previous topic :: View next topic
The time now is Sun Nov 23, 2008 2:01 pm | All times are GMT
navigation Forum index » *nix » Linux » Distributions » Debian
Jump to:  

Similar Topics
Topic Author Forum Replies Last Post
No new posts Local forwarding with "iptables" gives "invalid arguments" newsfuzzy@geekmail.de networking 0 Wed Jul 19, 2006 2:47 pm
No new posts Iptables and kernel 2.6.17 phelp needed Chavdar Videff Debian 8 Wed Jul 19, 2006 6:30 am
No new posts pl/sql for both backend and front end programming? Jack Wang Server 4 Wed Jul 19, 2006 2:31 am
No new posts Transparent server in front of Lucent Max TNT ISPMailings Squid 0 Wed Jul 12, 2006 8:25 pm
No new posts iptables: How to specify multiple address bolero92@yahoo.com networking 2 Mon Jul 10, 2006 9:16 am

Literatura fantastica | Free File Hosting | Virtual Pets Blog | Electricity Suppliers | Unsecured Loans
Copyright © 2004-2005 DeniX Solutions SRL
 
Other DeniX Solutions sites: Unix/Linux blog |  electronics forum |  medicine forum |  science forum | 
Privacy Policy


Powered by phpBB © 2001, 2005 phpBB Group
[ Time: 0.3458s ][ Queries: 16 (0.2130s) ][ GZIP on - Debug on ]