firewall sunexeias

Alex Chontzopoulos ac at it-cell.com
Wed Nov 16 08:30:07 EET 2005


Na prosthesw mono oti stin alisida INPUT afou bazoume default policy
DROP tha prepei na afisoume kai ta RELATED kai ESTABLISHED connections
gia na epistrefoun ta paketa pou bgazoume pros ta exw..

iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT

Ara me auto to polu aplo kai safws anwtero script twn 7 grammwn
epitrepeis na bgainoun ta panta pros ta exw kai na epistrefoun mono ta
replies autwn.

To amesws epomeno bima (toulaxistwn tha eprepe) einai to na perioriseis
kai to ti bgainei pros ta exw..



-----Original Message-----
From: linux-greek-users-bounces at lists.hellug.gr
[mailto:linux-greek-users-bounces at lists.hellug.gr] On Behalf Of Giorgos
Keramidas
Sent: Tuesday, November 15, 2005 7:21 PM
To: Harris Kosmidhs
Cc: linux-greek-users at hellug.gr
Subject: Re: firewall sunexeias

..........
Apisteytes paparies!  Eleos pia ayta ta GUI 'tools'.  Me to OUTPUT chain
oute pou 8elw na asxolh8w.

Ti na sou pw... egw de 8a xrhsimopoioysa pote ena toso polyploko
ruleset.  Oso auksanei h polyplokothta enos pragmatos, toso pio eykola
mporei na ginei lathos.

Egw 8a protimousa kati san to parakatw se ena script:

    iptables -F

    iptables -P INPUT   DROP
    iptables -P FORWARD DROP
    iptables -P OUTPUT  ACCEPT

    iptables -A INPUT -s 127.0.0.1/32 -d 127.0.0.1/32 -j ACCEPT
    iptables -A INPUT -p icmp -j ACCEPT

Ayta gia arxh.  Ystera mporeis na anoikseis "epilektika" kapoia
eiserxomena paketa :)


This e-mail and any attachments may contain confidential and
privileged information. If you are not the intended recipient,
please notify the sender immediately by return e-mail, do not forward 
this email to any other person, delete this
e-mail and destroy all copies. Any dissemination or use of this
information by a person other than the intended recipient is
unauthorized and may be illegal.







More information about the Linux-greek-users mailing list