Samer Y. Azmy wrote:> Hello,
>
> I have an idea of hardening my linux box, before I use it as a firewall
with Shorewall with something like
> http://www.bastille-linux.org/
>
> how good ,how bad or is there is a real need for this (even 1% need is a
big number for me )
>
If I were going to spend time hardening, I would harden my servers
rather than my firewall. A firewall that doesn''t expose any services to
the internet is order''s of magnitude harder to crack than the average
server.
-Tom
--
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net