[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: IPtables front end



On Thu, Jul 20, 2006 at 11:25:42PM +0800 or thereabouts, claytonk@163.com wrote:
> 
> On Thu, 20 Jul 2006 09:19:03 -0400
> Stephen <stephen.d.allen@gmail.com> wrote:
> 
> > I'm looking for a front end to iptables that doesn't rely on having X
> > installed. Is there such a beast ?
> > 
> > 
> > -- 
> > Regards
> > Stephen
> 
> I think firehol is very powerful, configuration is via editing /etc/firehol.conf. Simple needs are really easy to setup, and firehol is capable of setting up a fully-functional router, which is one of the things I use it for.

Hi:

I tried this after Shorewall gave me some issues. I guess I'm going to
ask a newbie question, but so be it.

After installation I'm given the following error; 
	# firehol start
	# Stopping: /etc/default/firehol forbids it.

Now I followed along with a firehol config tutorial at;
<http://firehol.sourceforge.net/tutorial.html?>

and when I list my network interfaces I'm presented with the following;
	1: lo: <LOOPBACK,UP> mtu 16436 qdisc noqueue
	   link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
	2: eth0: <BROADCAST,MULTICAST,UP> mtu 1500 qdisc pfifo_fastqlen 1000
	        link/ether 00:80:c6:f0:53:c6 brd ff:ff:ff:ff:ff:ff
	3: sit0: <NOARP> mtu 1480 qdisc noop link/sit 0.0.0.0 brd 0.0.0.0
		    
So am I correct in assuming that sit0 is my Internet side, and eth0 is
my Home/Lan ? I searched Google for 'sit0' and it appears to be a ipv6
thing -- is that assuption correct ?

I have my server in a DMZ through a broadband router/switch. So I assume
that eth0 would be my home side. Correct ?

Thanks.
-- 
Regards
Stephen
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
A hundred years from now it is very likely that [of Twain's works] "The
Jumping Frog" alone will be remembered.
		-- Harry Thurston Peck (Editor of "The Bookman"), January 1901.
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Attachment: signature.asc
Description: Digital signature


Reply to: