All of lore.kernel.org
 help / color / mirror / Atom feed
From: "Emre CELEB&#304;" <emre22@europe.com>
To: netfilter@lists.netfilter.org
Subject: Re: secure remote management
Date: Sat, 24 Jan 2004 19:02:46 +0200	[thread overview]
Message-ID: <20040124170246.20948.qmail@mail.com> (raw)


 
> 	Where I've used webmin in the past, I've changed the port that
> 	it listens on, and filtered access to that port to a specific list of ips.
> 	Given some configuration, it can be relatively secure.  
> 	Question -- you don't want to do X11 forwarded sessions because? .. 
> 	at a guess the users want to be able to see the rules from a winders 
> 	box downstream from the firewall?  -- at that point I can ses why ..
> 	webmin is a bit of overkill for this, but is granular enough that you
> 	can let your clients review the firewall rules and not allow them to 
> 	muck with them too much.
> 	
> 	There is a java project you might look at: http://sourceforge.net/projects/jwall
> 	but I've never used it -- I do know one person who has and finds it useful,
> 	how useful it would be for you I don't know.
> 
> 	Alistair
> 
Yeah, yur right cause users want to see the rules and logs in a windows enviroment, i also offered the Cygwin installation for ssh-X tunneling but oofff they are the bosses man they love IE!!. its easy for logs with php#mysql and using log analyzer and get custom reports but when it comes to rules im really scared. Also i tried JWall but it seems still pre-mature as i tested some rule genarating operations and it unfortunely produces wrong scripts for iptables (will contack the developer for this,) but i admire that jwall as it aims to be able to manage remotely IDS and firewall in a secure GUI env. cool for ones like me who tries to satisfy the unsatisfied MS users and also can scripting to check that gui outputs.

Emre.




-- 
_______________________________________________
Get your free email from http://www.mail.com



             reply	other threads:[~2004-01-24 17:02 UTC|newest]

Thread overview: 3+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-01-24 17:02 Emre CELEB&#304; [this message]
  -- strict thread matches above, loose matches on Subject: below --
2004-01-24 13:22 secure remote management Emre CELEB&#304;
2004-01-24 15:41 ` Unknown, Alistair Tonner

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20040124170246.20948.qmail@mail.com \
    --to=emre22@europe.com \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.