LeRoy Cressy on Tue, 26 Feb 2002 13:50:19 +0100


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] fire wall question(s)


Use nmap which is a comprehensive port scanner
Jon Galt wrote:
> 
> On Mon, 25 Feb 2002, LeRoy Cressy wrote:
> 
> > If your friend would put a second ethernet card in the Linux box then
> > the Linux box can act as the firewall using either iptables or ipchains
> > depending upon the kernel that is in the Linux box.  The configuration
> > would be:
> >
> > DSL Router --> eth0 Linux eth1 --> HUB <-- Windows Clients
> >
> > If you connect the HUB to the DSL Router then you do not have a
> > firewall.  But the Linux box can be connected directly to the DSL Router
> > with setting it up as a firewall.  Personally I am in favor of a
> > separate firewall with 3 NIC's, but I realize that for cost some want
> > the firewall to handle httpd and whatever services that you want to
> > serve up to the outside world.
> 
> Thanks, I know he doesn't have a firewall.  But the point is I'm trying to
> convince him *that* he needs a firewall, not *how*.  Currently he seems
> convinced that firewalls are unnecessary extra devices (or software) that
> are not needed if you have control of your machine.
> 
> > Your friend running anw windows box on a DSL without a firewall is in
> > extreme danger.  All you need is an open port to write to and you're in
> > to do whatever you want.
> 
> Now this is useful.  What can be done with simply an open port number?
> Also, is there software I can get for my Linux box that I can use to port
> scan my Windows box?  What about a packet sniffer (?) to watch all traffic
> on and into/out of my network?
> 
> Thanks,
> Wayne
> 
> ______________________________________________________________________
> Philadelphia Linux Users Group       -      http://www.phillylinux.org
> Announcements-http://lists.phillylinux.org/mail/listinfo/plug-announce
> General Discussion  -  http://lists.phillylinux.org/mail/listinfo/plug

-- 
Rev. LeRoy D. Cressy   mailto:lcressy@telocity.com   /\_/\
                       http://www.netaxs.com/~ldc   ( o.o )
                       Phone:  215-535-4037          > ^ <

Jesus saith unto him, I am the way, the truth, and the life: 
no man cometh unto the Father, but by me. (John 14:6)

______________________________________________________________________
Philadelphia Linux Users Group       -      http://www.phillylinux.org
Announcements-http://lists.phillylinux.org/mail/listinfo/plug-announce
General Discussion  -  http://lists.phillylinux.org/mail/listinfo/plug