OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: [suse-security] Newbie Question re. Firewall2 vs. IPTABLES

From: Ray Leach (raymondlknowledgefactory.co.za)
Date: Tue Jul 22 2003 - 07:08:58 CDT


On Tue, 2003-07-22 at 13:31, Knut Erik Hauslo wrote:
> Hello Uli,
>
> So if i deactivate firewall2, IPTABLES is still active and i can add my own set of rules (iptables -A TCP etc.) and they are active right away?
>
No, then you need to write your own shell script and get it to start
when you start your machine.

> Cheers
> -KEH
>
>
> -----Original Message-----
> From: Ulrich Roth [mailto:Rothimpact.de]
> Sent: Tuesday, July 22, 2003 1:25 PM
> To: suse-securitysuse.com
> Subject: AW: [suse-security] Newbie Question re. Firewall2 vs. IPTABLES
>
>
> Hi Knut,
>
> > i am new to SuSE (Linux in generall) and have been fiddeling with
> > firewall 2 for some time.
> >
> > My question is: If i deactivate SuSEfirewall2 (using YaST), will any
> > IPTABLES rule i might create afterward still take action? And if not,
> > where do i enable it (IPTABLES)?
> Iptables is enabled by default. SuSEfirewall2 is only a shell script that runs many many iptables commands, depending on how you configure it. You may create your own script to execute iptables commands, or you may use SuSE's firewall script. SuSE made this script in order to make life easier for admins. Bye
> Uli
> --
> Ulrich Roth
> IMPACT Business & Technology Consulting GmbH
> Im Mediapark 8 / KölnTurm
> D-50670 Koeln
> Phone +49-221-93 70 80-29
> Fax +49-221-93 70 80-15
> E-Mail: rothimpact.de
>
> --
> Check the headers for your unsubscription address
> For additional commands, e-mail: suse-security-helpsuse.com Security-related bug reports go to securitysuse.de, not here
--
--
Raymond Leach <raymondlknowledgefactory.co.za>
Network Support Specialist
http://www.knowledgefactory.co.za
"lynx -source http://www.rchq.co.za/raymondl.asc | gpg --import"
Key fingerprint = 7209 A695 9EE0 E971 A9AD 00EE 8757 EE47 F06F FB28
--

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2-rc1-SuSE (GNU/Linux)

iD8DBQA/HSlZh1fuR/Bv+ygRAj0JAJ4vzFX+DY7PJMfTbdDsEfYKUrFX1ACbB7f7
EY75Ai5jzUzBMbX2LeHbWqw=
=ZWLY
-----END PGP SIGNATURE-----