From: "Emre CELEBİ" <emre22@europe.com>
To: netfilter@lists.netfilter.org
Subject: Re: secure remote management
Date: Sat, 24 Jan 2004 19:02:46 +0200 [thread overview]
Message-ID: <20040124170246.20948.qmail@mail.com> (raw)
> Where I've used webmin in the past, I've changed the port that
> it listens on, and filtered access to that port to a specific list of ips.
> Given some configuration, it can be relatively secure.
> Question -- you don't want to do X11 forwarded sessions because? ..
> at a guess the users want to be able to see the rules from a winders
> box downstream from the firewall? -- at that point I can ses why ..
> webmin is a bit of overkill for this, but is granular enough that you
> can let your clients review the firewall rules and not allow them to
> muck with them too much.
>
> There is a java project you might look at: http://sourceforge.net/projects/jwall
> but I've never used it -- I do know one person who has and finds it useful,
> how useful it would be for you I don't know.
>
> Alistair
>
Yeah, yur right cause users want to see the rules and logs in a windows enviroment, i also offered the Cygwin installation for ssh-X tunneling but oofff they are the bosses man they love IE!!. its easy for logs with php#mysql and using log analyzer and get custom reports but when it comes to rules im really scared. Also i tried JWall but it seems still pre-mature as i tested some rule genarating operations and it unfortunely produces wrong scripts for iptables (will contack the developer for this,) but i admire that jwall as it aims to be able to manage remotely IDS and firewall in a secure GUI env. cool for ones like me who tries to satisfy the unsatisfied MS users and also can scripting to check that gui outputs.
Emre.
--
_______________________________________________
Get your free email from http://www.mail.com
next reply other threads:[~2004-01-24 17:02 UTC|newest]
Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top
2004-01-24 17:02 Emre CELEBİ [this message]
-- strict thread matches above, loose matches on Subject: below --
2004-01-24 13:22 secure remote management Emre CELEBİ
2004-01-24 15:41 ` Unknown, Alistair Tonner
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20040124170246.20948.qmail@mail.com \
--to=emre22@europe.com \
--cc=netfilter@lists.netfilter.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.