Samer Y. Azmy wrote:> Hello,
> 
> I have an idea of hardening my linux box, before I use it as a firewall
with Shorewall with something like
> http://www.bastille-linux.org/
> 
> how good ,how bad or is there is a real need for this (even 1% need is a
big number for me )
> 
If I were going to spend time hardening, I would harden my servers 
rather than my firewall. A firewall that doesn''t expose any services to
the internet is order''s of magnitude harder to crack than the average 
server.
-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ teastep@shorewall.net