[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
The netfilter presentation material
The netfilter presentation material is now available on our website.
http://kalamazoolinux.org/presentations/20010417/
One point I forgot to make was that a well configured firewall that allows
access from the internet to a service and drops everything else does not make
that service any more secure. If you DNAT from your gateway machine to an
internal server or open a port on the gateway machine, you still need to be just
as paranoid with that service running if a firewall is not installed.
If you want to use the more complex script from the my reccomendations page, it
is set up on my machine to have the three executable files in /root/* and the
config file in /etc/iptables/config.
I'd like to thank everyone there tonight for thier prescence.
Happy firewalling.
Dirk