At 12:00 PM 7/28/2003, Bopolissimus wrote:
> 1.  I'm wondering why pppd isn't being loaded at startup.  I don't want to

there are many ways to do this.

1) start it (whatever it is, pppd directly, or your script that calls pppd,
etc) in rc.local.  edit /etc/rc.d/rc.local (this is where it would be in

Yes, that's what I did earlier.  But thanks for discussing it, it's very much appreciated because your message was very newbie friendly.

3) i actually prefer to call wvdial (or, pppd, i used to do that long ago,
when i didn't know about wvdial yet) from /etc/crontab.  what i do is,
<snipped>

Nice script, I'm sure I will put it to good use...

sometimes pppd *will* die (mainly due to phone line problems, or because
someone picks up the phone or turns off the modem [my dialup line doesn't
have a phone attached at all]).

OH, so that's the reason for suggesting the script.  I better do this asap.

> 2.  I need a secure IPTABLES firewall script that allows outgoing access
> for a few select users.

uh.  that probably needs more specification.  do your select users have
fixed IP numbers?  if not, then your firewall script will have to be

Fixed, using the class c network 192.168.1.0/24

i've done stuff like this, but you'll need to provide more information so

Ok, I've encountered an iptables generator on the net, but somehow it's not quite enough because the gateway seems to be accepting (or receiving but not rejecting nor forwarding) external packets from hackers (Wingate's firewall has been spewing out rejections constantly, I'm sure the incoming packets are getting thru under linux, because when I'm downloading something, it crawls at 0.07kbps, while I get 5kbps under W98, so I need a better firewall.  I'm sending you my generated script directly, since you've been the most helpful so far.

> 3.  I also need a secure firewall for my fileserver which is running Samba
> under RH 7.3 also.   I hope someone here can help me get started.

whom do you want to secure it against?  you want to provide Samba access
only to certain LAN clients?  or are there dialup clients too?  i take

No, no dialup clients, this will only be a replacement for a netware server and a w2k server.

it you don't want to provide Samba access to everyone on the internet?

Oh, definitely. <g>

the interfaces section of /etc/samba/smb.conf (on my box, that file might be
elsewhere on yours, use find / -name smb.conf to find it).

<snipped>
Oh, okay, then, I think my samba server is already secure then, since it's on a different server from the gateway.

WARNING: those are off the top of my head.  man iptables and play with

Yes, nice and easy does it, although the man pages can sometimes be cryptic to newbies like me.

> "This e-mail is confidential and may also be privileged.

uh.  if you post to a mailing list, it will be archived and will be searchable
from the web.  so these warnings are void when posting to public lists :).

Right, I must remember to remove that when posting to lists.  thanks.  hehe

Jose Victor A. Martin, Jr.
Computer Specialist/Network Administrator
SFELAPCO, Inc.

--
Philippine Linux Users' Group (PLUG) Mailing List
[EMAIL PROTECTED] (#PLUG @ irc.free.net.ph)
Official Website: http://plug.linux.org.ph
Searchable Archives: http://marc.free.net.ph
.
To leave, go to http://lists.q-linux.com/mailman/listinfo/plug
.
Are you a Linux newbie? To join the newbie list, go to
http://lists.q-linux.com/mailman/listinfo/ph-linux-newbie

Reply via email to