* shorewall
@ 2003-09-08 9:26 Fritz Mesedilla
2003-09-08 9:52 ` shorewall Gavin Hamill
2003-09-08 11:08 ` shorewall Arnt Karlsen
0 siblings, 2 replies; 6+ messages in thread
From: Fritz Mesedilla @ 2003-09-08 9:26 UTC (permalink / raw)
To: netfilter
Has anybody used shorewall? If I try shorewall to fix my nat problem (make it easier) and still does not work, will I be able to disable shorewall and implement a manual setup of iptables again?
Thanks.
fritz <www.mesedilla.com>
---
+ Basta Ikaw Lord
----------------------------------------------------------------------
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the sender immediately by e-mail and delete this e-mail from your
system. Please note that any views or opinions presented in this
email are solely those of the author and do not necessarily represent
those of the company. Finally, the recipient should check this email
and any attachments for the presence of viruses. The company accepts
no liability for any damage caused by any virus transmitted by this
email.
Overture Media, Inc.
Direct Line: (632) 635-4785
Trunkline: (632) 631-8971 Local 146
Level 1 Summit Media Offices, Robinsons Galleria EDSA Cor. Ortigas Ave., Quezon City 1100
^ permalink raw reply [flat|nested] 6+ messages in thread
* Re: shorewall
2003-09-08 9:26 shorewall Fritz Mesedilla
@ 2003-09-08 9:52 ` Gavin Hamill
2003-09-08 11:08 ` shorewall Arnt Karlsen
1 sibling, 0 replies; 6+ messages in thread
From: Gavin Hamill @ 2003-09-08 9:52 UTC (permalink / raw)
To: netfilter
On Monday 08 September 2003 10:26, Fritz Mesedilla wrote:
> Has anybody used shorewall? If I try shorewall to fix my nat problem (make
> it easier) and still does not work, will I be able to disable shorewall and
> implement a manual setup of iptables again?
Shorewall is just a set of scripts to try and make managing netfilter a little
easier. All it does it generate lots of 'iptables' commandlines based on
values you plug into /etc/shorewall/*
If you decide you don't like it, simply delete the script files, and do
iptables -F ; iptables -X to clean everything out...
Cheers,
Gavin.
^ permalink raw reply [flat|nested] 6+ messages in thread
* RE: shorewall
@ 2003-09-08 11:08 Fritz Mesedilla
0 siblings, 0 replies; 6+ messages in thread
From: Fritz Mesedilla @ 2003-09-08 11:08 UTC (permalink / raw)
To: Gavin Hamill, netfilter
Thanks Gavin!
My iptables script works for securing our network.
It just doesn't work when I want to open up a small routing to an internal web server. :D Too much restriction as some said.
fritz <www.mesedilla.com>
---
+ Basta Ikaw Lord
> -----Original Message-----
> From: Gavin Hamill [mailto:gdh@acentral.co.uk]
> Sent: Monday, September 08, 2003 5:52 PM
> To: netfilter@lists.netfilter.org
> Subject: Re: shorewall
>
>
> On Monday 08 September 2003 10:26, Fritz Mesedilla wrote:
> > Has anybody used shorewall? If I try shorewall to fix my
> nat problem (make
> > it easier) and still does not work, will I be able to
> disable shorewall and
> > implement a manual setup of iptables again?
>
> Shorewall is just a set of scripts to try and make managing
> netfilter a little
> easier. All it does it generate lots of 'iptables'
> commandlines based on
> values you plug into /etc/shorewall/*
>
> If you decide you don't like it, simply delete the script
> files, and do
> iptables -F ; iptables -X to clean everything out...
>
> Cheers,
> Gavin.
>
>
----------------------------------------------------------------------
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the sender immediately by e-mail and delete this e-mail from your
system. Please note that any views or opinions presented in this
email are solely those of the author and do not necessarily represent
those of the company. Finally, the recipient should check this email
and any attachments for the presence of viruses. The company accepts
no liability for any damage caused by any virus transmitted by this
email.
Overture Media, Inc.
Direct Line: (632) 635-4785
Trunkline: (632) 631-8971 Local 146
Level 1 Summit Media Offices, Robinsons Galleria EDSA Cor. Ortigas Ave., Quezon City 1100
^ permalink raw reply [flat|nested] 6+ messages in thread
* Re: shorewall
2003-09-08 9:26 shorewall Fritz Mesedilla
2003-09-08 9:52 ` shorewall Gavin Hamill
@ 2003-09-08 11:08 ` Arnt Karlsen
1 sibling, 0 replies; 6+ messages in thread
From: Arnt Karlsen @ 2003-09-08 11:08 UTC (permalink / raw)
To: netfilter
On Mon, 8 Sep 2003 17:26:10 +0800,
"Fritz Mesedilla" <fritz.mesedilla@overturemedia.com> wrote in message
<F22386C3FEB012449238672E38ED61E70A8CB0@overlord.overturemedia.com>:
>
> Has anybody used shorewall?
..yup.
> If I try shorewall to fix my nat problem (make it easier) and still
> does not work, will I be able to disable shorewall and implement a
> manual setup of iptables again?
..yup.
..check out http://webmin.com/ , has a neat shorewall module.
..also check out ipcop-1.3.0 at http://ipcop.org/ is a firewall
distro with proxy server, 5 minute setup time, a good tutor
towards shorewall.
--
..med vennlig hilsen = with Kind Regards from Arnt... ;-)
...with a number of polar bear hunters in his ancestry...
Scenarios always come in sets of three:
best case, worst case, and just in case.
^ permalink raw reply [flat|nested] 6+ messages in thread
* RE: shorewall
@ 2003-09-08 11:15 Fritz Mesedilla
0 siblings, 0 replies; 6+ messages in thread
From: Fritz Mesedilla @ 2003-09-08 11:15 UTC (permalink / raw)
To: Arnt Karlsen, netfilter
Thanks Arnt!!! I appreciate it!
fritz <www.mesedilla.com>
---
+ Basta Ikaw Lord
> -----Original Message-----
> From: Arnt Karlsen [mailto:arnt@c2i.net]
> Sent: Monday, September 08, 2003 7:09 PM
> To: netfilter@lists.netfilter.org
> Subject: Re: shorewall
>
>
> On Mon, 8 Sep 2003 17:26:10 +0800,
> "Fritz Mesedilla" <fritz.mesedilla@overturemedia.com> wrote
> in message
> <F22386C3FEB012449238672E38ED61E70A8CB0@overlord.overturemedia.com>:
> >
> > Has anybody used shorewall?
>
> ..yup.
>
> > If I try shorewall to fix my nat problem (make it easier) and still
> > does not work, will I be able to disable shorewall and implement a
> > manual setup of iptables again?
>
> ..yup.
>
> ..check out http://webmin.com/ , has a neat shorewall module.
>
> ..also check out ipcop-1.3.0 at http://ipcop.org/ is a firewall
> distro with proxy server, 5 minute setup time, a good tutor
> towards shorewall.
>
> --
> ..med vennlig hilsen = with Kind Regards from Arnt... ;-)
> ...with a number of polar bear hunters in his ancestry...
> Scenarios always come in sets of three:
> best case, worst case, and just in case.
>
>
>
----------------------------------------------------------------------
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the sender immediately by e-mail and delete this e-mail from your
system. Please note that any views or opinions presented in this
email are solely those of the author and do not necessarily represent
those of the company. Finally, the recipient should check this email
and any attachments for the presence of viruses. The company accepts
no liability for any damage caused by any virus transmitted by this
email.
Overture Media, Inc.
Direct Line: (632) 635-4785
Trunkline: (632) 631-8971 Local 146
Level 1 Summit Media Offices, Robinsons Galleria EDSA Cor. Ortigas Ave., Quezon City 1100
^ permalink raw reply [flat|nested] 6+ messages in thread
* RE: shorewall
@ 2003-09-09 9:15 Fritz Mesedilla
0 siblings, 0 replies; 6+ messages in thread
From: Fritz Mesedilla @ 2003-09-09 9:15 UTC (permalink / raw)
To: netfilter
I was playing with shorewall and I was able to make the nat thing for a web server inside the firewall work.
Now what I want to know is what shorewall did to make it work. :D
I have been helped by many people here already but I can't make it work. I don't want to use shorewall for permanent use because it made a lot of rules that might not helpful and instead make my system prone to attacks.
fritz <www.mesedilla.com>
---
+ Basta Ikaw Lord
> -----Original Message-----
> From: Arnt Karlsen [mailto:arnt@c2i.net]
> Sent: Monday, September 08, 2003 7:09 PM
> To: netfilter@lists.netfilter.org
> Subject: Re: shorewall
>
>
> On Mon, 8 Sep 2003 17:26:10 +0800,
> "Fritz Mesedilla" <fritz.mesedilla@overturemedia.com> wrote
> in message
> <F22386C3FEB012449238672E38ED61E70A8CB0@overlord.overturemedia.com>:
> >
> > Has anybody used shorewall?
>
> ..yup.
>
> > If I try shorewall to fix my nat problem (make it easier) and still
> > does not work, will I be able to disable shorewall and implement a
> > manual setup of iptables again?
>
> ..yup.
>
> ..check out http://webmin.com/ , has a neat shorewall module.
>
> ..also check out ipcop-1.3.0 at http://ipcop.org/ is a firewall
> distro with proxy server, 5 minute setup time, a good tutor
> towards shorewall.
>
> --
> ..med vennlig hilsen = with Kind Regards from Arnt... ;-)
> ...with a number of polar bear hunters in his ancestry...
> Scenarios always come in sets of three:
> best case, worst case, and just in case.
>
>
>
----------------------------------------------------------------------
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the sender immediately by e-mail and delete this e-mail from your
system. Please note that any views or opinions presented in this
email are solely those of the author and do not necessarily represent
those of the company. Finally, the recipient should check this email
and any attachments for the presence of viruses. The company accepts
no liability for any damage caused by any virus transmitted by this
email.
Overture Media, Inc.
Direct Line: (632) 635-4785
Trunkline: (632) 631-8971 Local 146
Level 1 Summit Media Offices, Robinsons Galleria EDSA Cor. Ortigas Ave., Quezon City 1100
^ permalink raw reply [flat|nested] 6+ messages in thread
end of thread, other threads:[~2003-09-09 9:15 UTC | newest]
Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-09-08 9:26 shorewall Fritz Mesedilla
2003-09-08 9:52 ` shorewall Gavin Hamill
2003-09-08 11:08 ` shorewall Arnt Karlsen
-- strict thread matches above, loose matches on Subject: below --
2003-09-08 11:08 shorewall Fritz Mesedilla
2003-09-08 11:15 shorewall Fritz Mesedilla
2003-09-09 9:15 shorewall Fritz Mesedilla
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox