[linux-help] Re: SBC/Yahoo DSL
[Top] [All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index] [Thread Index]
I have been running an older Linux box with redhat 7.2 for over a year
with only 2 things different than stock as a firewall/gateway.
I have it running masquerading using ipchains, and am also running
portsentry to check for and block suspicious probes.
It also is running as a cacheing dns server so nothing from inside
communicates to the outside except thru the firewall and those are
masqueraded. As far as the outside world sees I have only one IP
connected, with 9 additional machines inside that have free access out.
Currently this is running on a Pentium 133 machine with 32MB ram and 2 NICs
--------------------------------------------------------------------------------------------------------------------
On the router/firewall issue, I find that they have a problem I have not
yet resolved.
As far as the router itself, I tried to replace the linux box with a
Linksys firewall/router.
It connects using dhcp or fixed IP, but does not reference PPPoE.
The specs say it does NAT and firewalling, but when I connected it up I
found the only way it does firewalling is to install Zone Alarm. Since
this is, AFAIK, a windows based application I chose not to install it yet.
Since the router is managed exclusively by a web based interface I am
not confident it cannot be accessed and broken from the outside
(internet) interface. The only requirement for unauthorized access that
I have found as yet is to break the password.
If anyone has specifics on how to set up the linksys firewall/router to
actually do firewalling without managing the firewall from a windows
machine and without installing what appears to be windows based (Zone
Alarm) software I am very interested.
Alternatively, if anyone has a suggestion for a linux based
firewall/router that actually can do firewalling using ipchains or
iptables I would be even more interested.
Marc Bachman wrote:
>Dear Friends- Thanks for the tip on PPPoE. What they?re sending me is an
>internal modem for which there are no linux drivers, and therefore I
>would not be able to use a linux firewall without having a proxy inside
>the gateway. How discouraging. So I read on and I discover that DSL
>routers are what more people have and that they?re not too expensive. I
>cannot imagine that a router would not work for me and that way I would
>not have a DSL interface that was OS dependent. I?m anxious to hear what
>you people out there know. What I read at the SBC site tells me I?m not
>eligible for a static IP, so I couldn?t host even a small file server by
>IP. Also, who knows what distro has the most bullet proof out of the box
>firewall?
>
>Marc Bachman
>marcbachman@xxxxxxxxxxx
>
>
-- This is the linux-help@xxxxxxxxx list. To unsubscribe,
visit http://www.complete.org/cgi-bin/listargate-aclug.cgi
|
|