Looking through the scripts isn't going to give you much of an idea of
weather your firewall is going to do what you want unless you're an absolute
guru when it comes to networking and network security and ipchains/
iptables/ ipfwadm you really need to bash your box with nessus and nmap to
find out if your exploitable. Even this may not technique may not discover
all holes and exploits but it's a whole lot more reliable than reading
through a script and trying to interpret what the script will do.

--

-----Original Message-----
From: Simon Wong [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, 27 February 2002 11:56 AM
To: Slug List
Subject: Re: [SLUG] Firewalls

On Wed, 2002-02-27 at 10:35, Catie Flick wrote:
> Personally I've only ever used Bastille Linux to 'harden' a box, and have
> sat down with the 'Linux Firewalls' book by Ziegler (excellent excellent
> reference) and taught myself ip[chains|tables] because I didn't really
trust
> the script generators myself :-)

I'm using firestarter (Gnome) to set my iptables up for me.

I guess I'm trusting that it does the right "thing" and a quick look
through the generated scripts seems OK - mind you I'm no expert and not
sure I have time to read the book you mention ;-)

Searching for "A Better Way" to a home loan ?. Call RAMS on 13 7267, or go to 
http://www.rams.com.au

The e-mail and any attachments may contain confidential information.  If you receive 
it in error you must not use or disclose the information. You must tell us and delete 
it. We do not waive any legal privilege by sending it. RAMS does not promise that the 
email is free from virus defect or error.
-- 
SLUG - Sydney Linux User Group Mailing List - http://slug.org.au/
More Info: http://lists.slug.org.au/listinfo/slug

Reply via email to