> Let me re-phrase the question: Can you recommend a script to setup
> iptables-firewall for a networked machine? (i.e. co-located machines 
> where
> you only allow incoming HTTP traffic and SSH sessions from trusted IPs)

If that's all that's there, simply edit the /etc/sysconfig/iptables 
file. Its similar to the one used by ipchains. All you'd have to do is 
just add the rules:
-A INPUT -p tcp -s $TRUSTED_IP -d $MACHINE_IP --dport 80 -j ACCEPT
-A INPUT -p tcp -s $TRUSTED_IP -d $MACHINE_IP --dport 22 -j ACCEPT
-A INPUT -j DROP

--------------------------------------
Gino LV. Ledesma
Ateneo Cervini-Eliazo Networks (ACENT)
email  :  [EMAIL PROTECTED]
web    :  http://cersa.admu.edu.ph/
phone  :  (63)(2) 426-6001 ext. 5925/5904

_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]

To subscribe to the Linux Newbies' List: send "subscribe" in the body to 
[EMAIL PROTECTED]

Reply via email to