Author Topic: Firewall  (Read 1485 times)

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Firewall
« on: July 30, 2011, 02:04:48 PM »
Done a bit of searching and may have missed it but is there some documentation on the firewall in 2011.6?
I may not be doing something right (noob) and want to read up.

Offline jimwilk

  • Hero Member
  • *****
  • Posts: 1112
Re: Firewall
« Reply #1 on: July 30, 2011, 03:17:48 PM »
Copperstuff,
Firstly, welcome to the forum - your new home!

Secondly, access the Firewall via PC Control Center > Security > Setup Firewall. The instructions are easy to follow.

I ticked the following: Domain Name Server; SSH Server; FTP Server; Mail Server; Pop and IMAP Server; and NFS Server.
After pressing OK, I then ticked every Network Activity to be watched.
In my case, I chose  Interfaces eth0 and Wifi wlan0 to be protected.

If I have goofed, someone here will put us both straight. In the meantime, enjoy your new distro.

Jim
PCLinuxOS 2013.01 KDE (2 desktop computers)
PCLinuxOS  2013.04 KDE on Asus  laptop


Windows free since 2005
Our house has windows: our computers have no Windoze!
Registered Linux User #409991

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Re: Firewall
« Reply #2 on: July 30, 2011, 07:31:27 PM »
Yeah, cool. Thanks for the response. Got that. But is there a way to know that it's up and running w/o having to check everytime I boot up?
Like have it in the tb near the clock, volume, etc?

Offline jimwilk

  • Hero Member
  • *****
  • Posts: 1112
Re: Firewall
« Reply #3 on: July 30, 2011, 07:45:07 PM »
I think that the easiest way to find out how well your machine is protected is to go to the Shields Up website and check your common ports. In my case, they are all "Stealth". That means they are invisible from outside.

Link: https://www.grc.com/x/ne.dll?bh0bkyd2

Hope this helps you.

Jim
PCLinuxOS 2013.01 KDE (2 desktop computers)
PCLinuxOS  2013.04 KDE on Asus  laptop


Windows free since 2005
Our house has windows: our computers have no Windoze!
Registered Linux User #409991

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Re: Firewall
« Reply #4 on: July 31, 2011, 06:04:36 AM »
Yeah, I do that. Because of the "other os" I understand checking things out. Shields Up is a great site.
My thing is can I get an icon that shows the firewall in the taskbar. To make sure it is up and running?
Am a bit on the paranoid side.

Offline Xero

  • Sr. Member
  • ****
  • Posts: 468
Re: Firewall
« Reply #5 on: July 31, 2011, 07:48:34 AM »
The firewall in linux is not a separate app like it is in windows, it's part and parcel of the whole thing. If it's enabled, it will run. If you prefer a more visible "front-end" to the firewall, I can suggest Firestarter, it's more like what I think you would be expecting, and is what I used to use before.
There is no shame in saying "I don't know".

Offline YouCanToo

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 5330
  • Location: Lebanon, OR., USA
    • Spreading the word.......
Re: Firewall
« Reply #6 on: July 31, 2011, 03:21:24 PM »
Yeah, I do that. Because of the "other os" I understand checking things out. Shields Up is a great site.
My thing is can I get an icon that shows the firewall in the taskbar. To make sure it is up and running?
Am a bit on the paranoid side.

He look we have another Andy!  ::) 

Do what Xero suggests and load firestarter from Synaptic. Than you will know it is running when or after you boot your system.




Be sure to visit the NEW Knowledge Base


Linux is user-friendly- it's just picky who its friends are!

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Re: Firewall
« Reply #7 on: July 31, 2011, 09:08:23 PM »
OK. I can grasp that. Firewall is part of and not a 3rd party app. So. Since I've set it up it's up and running whenever I boot up.
BTW-to jimwilk mentioning my new home. Not quite. I dual boot wiith xp because I am not quite comfortable enuff with Linux and still have a couple of things to work out.
The mention of Firestarter. From reading all over the Linux world as I have I have seen it mentioned that Firestarter is no longer being developed/worked on. Am I correct?

Also. What's an Andy?

Offline Archie

  • Global Moderator
  • Hero Member
  • *****
  • Posts: 8583
  • Aurum nostrum non est aurum vulgi.
Re: Firewall
« Reply #8 on: July 31, 2011, 09:57:29 PM »
Also. What's an Andy?

LOL What's an Andy???  ;D    ;D   ;D

You'll find out soon enough. Welcome to the forum, CopperStuff. Enjoy your stay.
Since 2006 | LiCo 401868 | Bare Metal | What is necessary is never unwise. --Sarek, 2258.42


Offline YouCanToo

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 5330
  • Location: Lebanon, OR., USA
    • Spreading the word.......
Re: Firewall
« Reply #9 on: July 31, 2011, 09:58:37 PM »
OK. I can grasp that. Firewall is part of and not a 3rd party app. So. Since I've set it up it's up and running whenever I boot up.
BTW-to jimwilk mentioning my new home. Not quite. I dual boot wiith xp because I am not quite comfortable enuff with Linux and still have a couple of things to work out.
The mention of Firestarter. From reading all over the Linux world as I have I have seen it mentioned that Firestarter is no longer being developed/worked on. Am I correct?

I really can't say as I do not use it.

Quote
Also. What's an Andy?

Andy is a member here on the forum (username AndrzejL) he tends to be a bit on the paranoid side also.





Be sure to visit the NEW Knowledge Base


Linux is user-friendly- it's just picky who its friends are!

Offline jimwilk

  • Hero Member
  • *****
  • Posts: 1112
Re: Firewall
« Reply #10 on: July 31, 2011, 11:20:17 PM »
OK. I can grasp that. Firewall is part of and not a 3rd party app. So. Since I've set it up it's up and running whenever I boot up.
BTW-to jimwilk mentioning my new home. Not quite. I dual boot wiith xp because I am not quite comfortable enuff with Linux and still have a couple of things to work out.
The mention of Firestarter. From reading all over the Linux world as I have I have seen it mentioned that Firestarter is no longer being developed/worked on. Am I correct?

Also. What's an Andy?

Well, if PCLinuxOS forum isn't yet your new home, let it be your holiday home. Later, you can retire from your XP home to your retirement haven and enjoy bliss.

Jim
PCLinuxOS 2013.01 KDE (2 desktop computers)
PCLinuxOS  2013.04 KDE on Asus  laptop


Windows free since 2005
Our house has windows: our computers have no Windoze!
Registered Linux User #409991

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Re: Firewall
« Reply #11 on: August 03, 2011, 12:41:10 AM »
My retirement haven and enjoy bliss? LOL!!! Maybe just maybe.

OK. Got the firewall part figured I spose but how does the firewall relate to ports?
Doesn't pass the Shield's Up test because port 93 is closed and not stealth.

How does one do that?

Offline 7272andy

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 1627
  • UK MLU
Re: Firewall
« Reply #12 on: August 03, 2011, 03:39:38 AM »
You can stealth it by adding

DROP net fw tcp 93

to the bottom of /etc/shorewall/rules, just above "#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE"

Then either
Reboot or start the PCC, click on System -> Enable or disable system services; find the Shorewall service, click Stop and when it stops click Start.


Bare Metal 1         Bare Metal 2
Intel Celeron 420M   Intel i5 540M
2GB Ram              4GB Ram
Intel 943GM          Radeon HD 5650 PCI Express
RT2573               RT2790
32bit KDE            32&64bit KDE

Online muungwana

  • Hero Member
  • *****
  • Posts: 6214
Re: Firewall
« Reply #13 on: August 03, 2011, 06:13:28 AM »

OK. Got the firewall part figured I spose but how does the firewall relate to ports?


all traffic in and out of your computer go through "door" known as ports, the lowest one is "0" and the highest one is "65536".

A firewall works by allowing and disallowing traffic through those ports. All firewall works this way.
.. 3 things are certain in life : death, taxes and software bloat ..
.. tell me something i don't know, something i can use as i struggle to reason with the world around me ..

Offline Archie

  • Global Moderator
  • Hero Member
  • *****
  • Posts: 8583
  • Aurum nostrum non est aurum vulgi.
Re: Firewall
« Reply #14 on: August 03, 2011, 06:35:07 AM »
My my my ... now I know why throughput does not use the 'door' .... it gets thrown out of the window! 65566. (Just kidding!)  ;D    ;D    ;D
Since 2006 | LiCo 401868 | Bare Metal | What is necessary is never unwise. --Sarek, 2258.42