Displaying 20 results from an estimated 30000 matches similar to: "portsentry and shorewall"
2003 Jul 16
6
HOWTO: Temporary dynamic blocking with Shorewall and Portsentry
Hi, all:
This is just a note and suggestion, not a question; but I really like this
system and thought it might be useful to others so I decided to share. Hope
it helps someone, and comments or suggestions are always welcome.
1. Overview: Shorewall accepts traffic on ports that I consider
"hostile" (i.e. ports on which I would NEVER expect to see connections) and
redirects
2005 Apr 28
2
portsentry+shorewall
Hello,
i use shorewall for a very long time (2 years or so) and i use it for nat and
as firewall....i now use portsentrys to detect portscans but there is one
problem...i use the HOWTO from the shorewall mailing list to make portsentry
and shorewall work together....but there is one prob portscans get detected
and a drop rule is added to shorewall for example
shorewall drop 62.178.xxx.xx
2005 Jan 10
3
REDIRECT + shorewall drop for dynamic blacklists
Hi,
I have seen this come up in a couple of threads, but nothing recent.
I was wondering a couple of things and was hoping someone could clarify.
I have an existing working shorewall configuration (Details at end of post).
>From within this config, I have a few ports redirected for use with
portsentry (like the mini-howto directs forbidden port accesses to port
49999). This works
2005 Aug 26
0
portsentry and proftpd RPMs available
Just dropping a note, I've built CentOS4 friendly RPMs (as well as RHEL4
and FC4) of two of my favourite tools, PortSentry and ProFTPd:
ftp://ftp.pbone.net/mirror/ftp.falsehope.net/home/tengel/portsentry/CentOS4/
ftp://ftp.pbone.net/mirror/ftp.falsehope.net/home/tengel/proftpd/CentOS4/
PortSentry is built using the last known (RedHat 9 based) SPEC/patches
from FreshRPMS, updated to apply
2005 Sep 15
3
Portsentry
I'm running CentOS 4 with Blue Quartz on a white box, and having problems
with installing Portsentry vi the .tar.gz route. Various errors, etc.
Anyone here know of a source, like an RPM or something, for Portsentry for
CentOS?
... or a similar app?
thnx, Manny
2003 Aug 05
4
Shorewall 1.4.6b
This is a bug-fix roll-up.
Problems corrected since 1.4.6:
1) Corrected problem in 1.4.6 where the MANGLE_ENABLED variable was
being tested before it was set.
2) Corrected handling of MAC addresses in the SOURCE column of the
tcrules file. Previously, these addresses resulted in an invalid
iptables command.
3) The "shorewall stop" command is now disabled when
2005 Sep 16
0
Portsentry cause IPTable Reloads
I'm having some trouble with portsentry on CentOS. I've installed it
and configured it to ignore my network. However, every 20 minutes, it
reloads my iptables and basically kills any SSH sessions, etc. Any
suggestions?
Thanks,
Todd
-------------- next part --------------
An HTML attachment was scrubbed...
URL:
2004 Jun 16
0
shorewall and proxyarp ?
Hello all,
I have a question in regards to proxyarp and shorewall, I am new to shorewall
and I have 5 static IP address from my ISP. My current setup is that I have
one system with three network cards, (eth0 = xx.xx.xx.42, eth1 = 192.168.110.41
eth2 = 10.10.10.41), two systems with two network cards, (eth0 = xx.xx.xx.41
and eth1 = 10.10.10.42/44), I want to get rid of the eth1 of the two systems
2003 Apr 26
4
lists.shorewall.net is back up
That could have gone smoother. I had many problems with the NFS install on
my firewall then once I got the server back up, mail delivery was broken :-
(
I still haven''t gotten ulogd to run under RH9.0 but everything else seems
to be working ok...
-Tom
--
Tom Eastep \ Shorewall - iptables made easy
Shoreline, \ http://www.shorewall.net
Washington USA \ teastep@shorewall.net
2003 May 30
3
Shorewall Support
I regret to announce that effective immediately, I will no longer be
answering Shorewall questions during local business hours. I normally work
from 7:00AM - 4:00PM, Pacific Time (GMT -0800).
-Tom
--
Tom Eastep \ Shorewall - iptables made easy
Shoreline, \ http://www.shorewall.net
Washington USA \ teastep@shorewall.net
2003 May 21
1
Call for Testers of Shorewall/Fireparse (take 2)
The version of Shorewall in the \Shorewall CVS project has my next attempt
at Fireparse integration.
a) The LOGMARKER variable is gone and is replaced with LOGFORMAT
b) LOGFORMAT contains a printf (1) formatting template that accepts three
arguments:
1) The Chain Name
2) The Logging Rule Number within Chain
3) The disposition of the packet (DROP,REJECT,ACCEPT)
c) To use Shorewall with
2013 Sep 01
2
ICMP rate limit terminates shorewall
I''m using the following rule on 3 different systems running
shorewall-4.5.18 on Gentoo:
ACCEPT all all icmp - - - 10/sec:20
shorewall starts fine on 2 of the systems but on the 3rd it fails to
start with the following error:
iptables-restore: line 119 failed
ERROR: iptables-restore Failed. Input is in
/var/lib/shorewall/.iptables-restore-input
/usr/share/shorewall/lib.common: line 113:
2004 Nov 22
3
how do I configure shorewall to block people port scanning ?
as subject
2004 Nov 27
3
/etc/shorewall/masq
In /etc/shorewall/masq I have:
eth0 eth1
eth0 vmnet1
eth0 vmnet8
-------------
eth0 is my default route to the Linksys
router connected to the cable modem.
eth1 is my connection to 192.168.1 subnet
and it is the gateway for all other machines
on this subnet.
My routing table is:
# netstat -nr
Kernel IP routing table
Destination
2005 May 05
4
Shorewall 2.3.0
http://shorewall.net/pub/shorewall/2.3/shorewall-2.3.0
ftp://shorewall.net/pub/shorewall/2.3/shorewall-2.3.0
WARNING: This is a development release and may be unstable
New Features in version 2.3.0
1) Shorewall 2.3.0 supports the ''cmd-owner'' option of the owner match
facility in Netfilter. Like all owner match options, ''cmd-owner'' may
only be applied to
2002 Nov 19
2
Shorewall operating status and how to stay "blocked"
Hi all,
I have just started using shorewall. So far so good. I have two
questions which I cant find an answer to either on the website or
googling.
They may be stupid so please forgive my ignorance.
1) What is shorewalls preferred operating status, running or stopped?
What I mean is, some firewalls start-up and run, and they do their
thing, then they stop. But the firewall is still really
2005 Mar 30
7
RE: Shorewall and an inline IDS (snort-inline orhogwash)
I made an atempt to run snort_inline and shorewall on the same system
but I could not get snort to see the packets.
Maybe someone with a little more iptables knowledge could tell me what
I''m doing wrong or if its possible to have the systems setup so that it
places packets that the firewall would allow into QUEUE.
After setting up and starting shorewall I then issue the following
2005 Mar 10
1
farpd with shorewall
Hi,
Currently I am looking for possibility to have a
no-config network enviroment, where in this local area
network, we don''t need to set any ip to a computer, it
doesn''t matter the computer already have a fixed
ip/sm/gw (even doesn''t belong to the enviroment). When
ever a browser is ''clicked'', the computer will able to
get connected to the internet.
2009 Mar 13
0
Polices, Rules and Configurations - No Success (#/etc/shorewall/policy)
Hello,
I forgot to put my #/etc/shorewall/policy file:
# /etc/shorewall/policy
###############################################################################
#SOURCE DEST POLICY LOG LIMIT: CONNLIMIT:
# LEVEL BURST MASK
#
adm net DROP info
tlm net DROP info
#
net adm DROP
2002 May 13
3
RE: [Shorewall-users] SMTP outbound problem (fwd)
I think we should add an FAQ entry for tcp_ecn.
I remember Tom giving a good description in one of his many responses
and there is mention of it in the pptp page, but I could not find the
response from Tom about different tcp stacks.
Thanks,
--
Steve Herber herber@thing.com work: 206-261-0307
Systems Engineer, AMCIS, UoW home: 425-454-2399
---------- Forwarded message ----------
Date: Sat,