Author Topic: Firewall  (Read 1484 times)

Offline CopperStuff

  • New Friend
  • *
  • Posts: 7
Re: Firewall
« Reply #15 on: August 07, 2011, 07:43:11 PM »
OK. After breaking everything and reinstalling a coupla times I did what Andy suggested. Fixed that port then another shows up. I guess screw it. Chasing ports is not my idea of running an os.  From all my reading it does seem that by default Linux is more secure than, well, that other os, so I'll just content myself with this latest release of PCLinuxOS and see what I can learn to maybe get away from that other os.

Thanx for the replies.

Offline YouCanToo

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 5324
  • Location: Lebanon, OR., USA
    • Spreading the word.......
Re: Firewall
« Reply #16 on: August 07, 2011, 11:32:10 PM »
You can stealth it by adding

DROP net fw tcp 93

to the bottom of /etc/shorewall/rules, just above "#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE"

Then either
Reboot or start the PCC, click on System -> Enable or disable system services; find the Shorewall service, click Stop and when it stops click Start.


No need for rebooting, just restart the service itself.

Open a console window as the root user and use the following command

service iptables restart.

That rebooting stuff is oh so Windows like .........




Be sure to visit the NEW Knowledge Base


Linux is user-friendly- it's just picky who its friends are!

Offline YouCanToo

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 5324
  • Location: Lebanon, OR., USA
    • Spreading the word.......
Re: Firewall
« Reply #17 on: August 07, 2011, 11:38:15 PM »
OK. After breaking everything and reinstalling a coupla times I did what Andy suggested. Fixed that port then another shows up. I guess screw it. Chasing ports is not my idea of running an os.  From all my reading it does seem that by default Linux is more secure than, well, that other os, so I'll just content myself with this latest release of PCLinuxOS and see what I can learn to maybe get away from that other os.

Thanx for the replies.

FWIW if the port is closed you are protected. Stealth just means that any request  to that port is being dropped and no reply is being returned. It is like hiding, where when a port is closed the other side knows there is a computer there but that post is closed.  Just be careful which ports that you close.




Be sure to visit the NEW Knowledge Base


Linux is user-friendly- it's just picky who its friends are!

Offline 7272andy

  • PCLinuxOS Tester
  • Hero Member
  • *******
  • Posts: 1627
  • UK MLU
Re: Firewall
« Reply #18 on: August 08, 2011, 05:10:05 AM »
You can stealth it by adding

DROP net fw tcp 93

to the bottom of /etc/shorewall/rules, just above "#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE"

Then either
Reboot or start the PCC, click on System -> Enable or disable system services; find the Shorewall service, click Stop and when it stops click Start.


No need for rebooting, just restart the service itself.

Open a console window as the root user and use the following command

service iptables restart.

That rebooting stuff is oh so Windows like .........


Picky picky YCT ;D

I did say Reboot OR Restart the service

FWIW if the port is closed you are protected. Stealth just means that any request  to that port is being dropped and no reply is being returned. It is like hiding, where when a port is closed the other side knows there is a computer there but that post is closed.  Just be careful which ports that you close.

Good advice


Bare Metal 1         Bare Metal 2
Intel Celeron 420M   Intel i5 540M
2GB Ram              4GB Ram
Intel 943GM          Radeon HD 5650 PCI Express
RT2573               RT2790
32bit KDE            32&64bit KDE