Linux Netfilter discussions
 help / color / mirror / Atom feed
* IPTables for Sun Solaris
@ 2005-08-09 21:14 Ruiyuan Jiang
  2005-08-11 12:22 ` Toby DiPasquale
  0 siblings, 1 reply; 11+ messages in thread
From: Ruiyuan Jiang @ 2005-08-09 21:14 UTC (permalink / raw)
  To: netfilter

Hi, all

I am new to the list. I just downloaded iptables-1.3.3. From INSTALL
file, it seems IPTables only supports Linux. I have Solaris 10 for
SPARC. Does IPTables support Solaris and HP-UX, etc.? Thanks.


Ryan


^ permalink raw reply	[flat|nested] 11+ messages in thread

* Re: IPTables for Sun Solaris
  2005-08-09 21:14 IPTables for Sun Solaris Ruiyuan Jiang
@ 2005-08-11 12:22 ` Toby DiPasquale
  2005-08-11 12:34   ` Tim Evans
  2005-08-11 21:07   ` R. DuFresne
  0 siblings, 2 replies; 11+ messages in thread
From: Toby DiPasquale @ 2005-08-11 12:22 UTC (permalink / raw)
  To: Ruiyuan Jiang, netfilter

On 8/9/05, Ruiyuan Jiang <Ruiyuan_Jiang@liz.com> wrote:
> I am new to the list. I just downloaded iptables-1.3.3. From INSTALL
> file, it seems IPTables only supports Linux. I have Solaris 10 for
> SPARC. Does IPTables support Solaris and HP-UX, etc.? Thanks.

No, iptables can only be used with Linux because it relies on the
netfilter framework in the Linux kernel. Solaris' kernel lacks
netfilter, therefore it cannot make use of iptables. You might be able
to get a command-line tool with the same interface as iptables for
Solaris, however; look around.

-- 
Toby DiPasquale
0x636f6465736c696e67657240676d61696c2e636f6d


^ permalink raw reply	[flat|nested] 11+ messages in thread

* Re: IPTables for Sun Solaris
  2005-08-11 12:22 ` Toby DiPasquale
@ 2005-08-11 12:34   ` Tim Evans
  2005-08-11 12:42     ` Toby DiPasquale
  2005-08-11 21:07   ` R. DuFresne
  1 sibling, 1 reply; 11+ messages in thread
From: Tim Evans @ 2005-08-11 12:34 UTC (permalink / raw)
  To: Toby DiPasquale, Ruiyuan Jiang, netfilter

On Thu, 11 Aug 2005 08:22:33 -0400, Toby DiPasquale wrote

> No, iptables can only be used with Linux because it relies on the
> netfilter framework in the Linux kernel. Solaris' kernel lacks
> netfilter, therefore it cannot make use of iptables. You might be 
> able to get a command-line tool with the same interface as iptables for
> Solaris, however; look around.

Recent Solaris versions include 'ipfilter'.  Main site for ipfilter is
http://www.ipfilter.org/




--
Tim Evans, TKEvans.com, Inc.    |    5 Chestnut Court
tkevans@tkevans.com             |    Owings Mills, MD 21117
http://www.tkevans.com/         |    443-394-3864
http://www.come-here.com/News/  |    



^ permalink raw reply	[flat|nested] 11+ messages in thread

* Re: IPTables for Sun Solaris
  2005-08-11 12:34   ` Tim Evans
@ 2005-08-11 12:42     ` Toby DiPasquale
  0 siblings, 0 replies; 11+ messages in thread
From: Toby DiPasquale @ 2005-08-11 12:42 UTC (permalink / raw)
  To: tkevans, Ruiyuan Jiang, netfilter

On 8/11/05, Tim Evans <tkevans@tkevans.com> wrote:
> Recent Solaris versions include 'ipfilter'.  Main site for ipfilter is
> http://www.ipfilter.org/

Actually, this site doesn't exist. The main site for IP Filter is here:

http://coombs.anu.edu.au/~avalon/

-- 
Toby DiPasquale
0x636f6465736c696e67657240676d61696c2e636f6d


^ permalink raw reply	[flat|nested] 11+ messages in thread

* Re: IPTables for Sun Solaris
  2005-08-11 21:07   ` R. DuFresne
@ 2005-08-11 21:01     ` Tim Evans
  0 siblings, 0 replies; 11+ messages in thread
From: Tim Evans @ 2005-08-11 21:01 UTC (permalink / raw)
  To: R. DuFresne, Toby DiPasquale; +Cc: netfilter, Ruiyuan Jiang

On Thu, 11 Aug 2005 17:07:22 -0400 (EDT), R. DuFresne wrote

> Can we say sunscreen?  Of course IPF and IPFW seem to port well to 
> the SUN/Solaris envs...

In fact, Solaris 10 includes ipfilter if you do a full isntall; sunscreen is
*so* 2002.


--
Tim Evans, TKEvans.com, Inc.    |    5 Chestnut Court
tkevans@tkevans.com             |    Owings Mills, MD 21117
http://www.tkevans.com/         |    443-394-3864
http://www.come-here.com/News/  |    



^ permalink raw reply	[flat|nested] 11+ messages in thread

* Re: IPTables for Sun Solaris
  2005-08-11 12:22 ` Toby DiPasquale
  2005-08-11 12:34   ` Tim Evans
@ 2005-08-11 21:07   ` R. DuFresne
  2005-08-11 21:01     ` Tim Evans
  1 sibling, 1 reply; 11+ messages in thread
From: R. DuFresne @ 2005-08-11 21:07 UTC (permalink / raw)
  To: Toby DiPasquale; +Cc: netfilter, Ruiyuan Jiang

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1



Can we say sunscreen?  Of course IPF and IPFW seem to port well to the 
SUN/Solaris envs...


Thanks,

Ron DuFresne

On Thu, 11 Aug 2005, Toby DiPasquale wrote:

> On 8/9/05, Ruiyuan Jiang <Ruiyuan_Jiang@liz.com> wrote:
>> I am new to the list. I just downloaded iptables-1.3.3. From INSTALL
>> file, it seems IPTables only supports Linux. I have Solaris 10 for
>> SPARC. Does IPTables support Solaris and HP-UX, etc.? Thanks.
>
> No, iptables can only be used with Linux because it relies on the
> netfilter framework in the Linux kernel. Solaris' kernel lacks
> netfilter, therefore it cannot make use of iptables. You might be able
> to get a command-line tool with the same interface as iptables for
> Solaris, however; look around.
>
> --
> Toby DiPasquale
> 0x636f6465736c696e67657240676d61696c2e636f6d
>
>

- -- 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         admin & senior security consultant:  sysinfo.com
                         http://sysinfo.com
Key fingerprint = 9401 4B13 B918 164C 647A  E838 B2DF AFCC 94B0 6629

...We waste time looking for the perfect lover
instead of creating the perfect love.

                 -Tom Robbins <Still Life With Woodpecker>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFC+74Nst+vzJSwZikRAqCMAKDPv24C0PQPXMnSr+GADF5dXbfr6QCfVXnP
/Dfepb21HrjU7TuXsDoYiog=
=rrcI
-----END PGP SIGNATURE-----


^ permalink raw reply	[flat|nested] 11+ messages in thread

* RE: IPTables for Sun Solaris
@ 2005-08-11 21:09 Ruiyuan Jiang
  0 siblings, 0 replies; 11+ messages in thread
From: Ruiyuan Jiang @ 2005-08-11 21:09 UTC (permalink / raw)
  To: tkevans, R. DuFresne, Toby DiPasquale; +Cc: netfilter

So Tim, does ipfilter satisfy all the Snort_inline requirement? I mean
can I install it on Solaris 10? Thanks.

Ryan 

-----Original Message-----
From: Tim Evans [mailto:tkevans@tkevans.com] 
Sent: Thursday, August 11, 2005 5:02 PM
To: R. DuFresne; Toby DiPasquale
Cc: netfilter@lists.netfilter.org; Ruiyuan Jiang
Subject: Re: IPTables for Sun Solaris

On Thu, 11 Aug 2005 17:07:22 -0400 (EDT), R. DuFresne wrote

> Can we say sunscreen?  Of course IPF and IPFW seem to port well to the

> SUN/Solaris envs...

In fact, Solaris 10 includes ipfilter if you do a full isntall;
sunscreen is
*so* 2002.


--
Tim Evans, TKEvans.com, Inc.    |    5 Chestnut Court
tkevans@tkevans.com             |    Owings Mills, MD 21117
http://www.tkevans.com/         |    443-394-3864
http://www.come-here.com/News/  |    


^ permalink raw reply	[flat|nested] 11+ messages in thread

* RE: IPTables for Sun Solaris
@ 2005-08-11 21:56 Tim Evans
  0 siblings, 0 replies; 11+ messages in thread
From: Tim Evans @ 2005-08-11 21:56 UTC (permalink / raw)
  To: tkevans, dufresne, codeslinger, Ruiyuan_Jiang; +Cc: netfilter


>So Tim, does ipfilter satisfy all the Snort_inline requirement? I mean
>can I install it on Solaris 10? Thanks.

If you did a full Solaris 10 install, you already have it.  If not, it's on the 
Solaris CD's

$ uname -a
SunOS osprey 5.10 Generic_118822-08 sun4u sparc SUNW,Sun-Blade-1500

$ uname -a
SunOS osprey 5.10 Generic_118822-08 sun4u sparc SUNW,Sun-Blade-1500

$ pkginfo | grep "IP Filter"
system      SUNWipfr                         IP Filter utilities, (Root)
system      SUNWipfu                         IP Filter utilities, (Usr)
--
Tim Evans, TKEvans.com, Inc.	|    5 Chestnut Court
tkevans@tkevans.com		|    Owings Mills, MD 21117
http://www.tkevans.com/		|    443-394-3864
http://www.come-here.com/News/	|    



^ permalink raw reply	[flat|nested] 11+ messages in thread

* RE: IPTables for Sun Solaris
@ 2005-08-11 22:03 Ruiyuan Jiang
  2005-08-12 12:11 ` Tim Evans
  0 siblings, 1 reply; 11+ messages in thread
From: Ruiyuan Jiang @ 2005-08-11 22:03 UTC (permalink / raw)
  To: Tim Evans, dufresne, codeslinger; +Cc: netfilter

Does IP Filter contains "libipq library that allows snort_inline to
interface with iptables. Also, you must build and install LibNet, which
is available from http://www.packetfactory.net."? 

I don't think I installed IP Filter on Solari 10 but I can install it no
problem. Once I installed IP Filter, if I follow the rest instruction to
install snort_inline, will it work? Thanks, Tim.

Ryan 

-----Original Message-----
From: Tim Evans [mailto:tkevans@tkevans.com] 
Sent: Thursday, August 11, 2005 5:57 PM
To: tkevans@tkevans.com; dufresne@sysinfo.com; codeslinger@gmail.com;
Ruiyuan Jiang
Cc: netfilter@lists.netfilter.org
Subject: RE: IPTables for Sun Solaris


>So Tim, does ipfilter satisfy all the Snort_inline requirement? I mean 
>can I install it on Solaris 10? Thanks.

If you did a full Solaris 10 install, you already have it.  If not, it's
on the Solaris CD's

$ uname -a
SunOS osprey 5.10 Generic_118822-08 sun4u sparc SUNW,Sun-Blade-1500

$ uname -a
SunOS osprey 5.10 Generic_118822-08 sun4u sparc SUNW,Sun-Blade-1500

$ pkginfo | grep "IP Filter"
system      SUNWipfr                         IP Filter utilities, (Root)
system      SUNWipfu                         IP Filter utilities, (Usr)
--
Tim Evans, TKEvans.com, Inc.	|    5 Chestnut Court
tkevans@tkevans.com		|    Owings Mills, MD 21117
http://www.tkevans.com/		|    443-394-3864
http://www.come-here.com/News/	|    


^ permalink raw reply	[flat|nested] 11+ messages in thread

* RE: IPTables for Sun Solaris
@ 2005-08-12  0:26 Tim Evans
  0 siblings, 0 replies; 11+ messages in thread
From: Tim Evans @ 2005-08-12  0:26 UTC (permalink / raw)
  To: tkevans, dufresne, codeslinger, Ruiyuan_Jiang; +Cc: netfilter


>Does IP Filter contains "libipq library that allows snort_inline to
>interface with iptables. Also, you must build and install LibNet, which
>is available from http://www.packetfactory.net."? 
>
>I don't think I installed IP Filter on Solari 10 but I can install it no
>problem. Once I installed IP Filter, if I follow the rest instruction to
>install snort_inline, will it work? Thanks, Tim.

It does not appear libipq is included.

(I don't use ipfilter on Solaris 10; I just happened to remember that it is 
included--and is a supported Sun package.)
--
Tim Evans, TKEvans.com, Inc.	|    5 Chestnut Court
tkevans@tkevans.com		|    Owings Mills, MD 21117
http://www.tkevans.com/		|    443-394-3864
http://www.come-here.com/News/	|    



^ permalink raw reply	[flat|nested] 11+ messages in thread

* RE: IPTables for Sun Solaris
  2005-08-11 22:03 Ruiyuan Jiang
@ 2005-08-12 12:11 ` Tim Evans
  0 siblings, 0 replies; 11+ messages in thread
From: Tim Evans @ 2005-08-12 12:11 UTC (permalink / raw)
  To: Ruiyuan Jiang, Tim Evans, dufresne, codeslinger; +Cc: netfilter

On Thu, 11 Aug 2005 18:03:31 -0400, Ruiyuan Jiang wrote
> Does IP Filter contains "libipq library that allows snort_inline to
> interface with iptables. Also, you must build and install LibNet, which
> is available from http://www.packetfactory.net."? 
> 
> I don't think I installed IP Filter on Solari 10 but I can install 
> it no problem. Once I installed IP Filter, if I follow the rest 
> instruction to install snort_inline, will it work? Thanks, Tim.

As I suggested earlier, I can't say.  I don't use ipfilter, nor snort, nor do
I work for Sun Microsystems.
--
Tim Evans, TKEvans.com, Inc.    |    5 Chestnut Court
tkevans@tkevans.com             |    Owings Mills, MD 21117
http://www.tkevans.com/         |    443-394-3864
http://www.come-here.com/News/  |    



^ permalink raw reply	[flat|nested] 11+ messages in thread

end of thread, other threads:[~2005-08-12 12:11 UTC | newest]

Thread overview: 11+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-08-09 21:14 IPTables for Sun Solaris Ruiyuan Jiang
2005-08-11 12:22 ` Toby DiPasquale
2005-08-11 12:34   ` Tim Evans
2005-08-11 12:42     ` Toby DiPasquale
2005-08-11 21:07   ` R. DuFresne
2005-08-11 21:01     ` Tim Evans
  -- strict thread matches above, loose matches on Subject: below --
2005-08-11 21:09 Ruiyuan Jiang
2005-08-11 21:56 Tim Evans
2005-08-11 22:03 Ruiyuan Jiang
2005-08-12 12:11 ` Tim Evans
2005-08-12  0:26 Tim Evans

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox