[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[ale] Advice Request -> IPFW ruleset
- Subject: [ale] Advice Request -> IPFW ruleset
- From: ccthomas at flash.net (Courtney Thomas)
- Date: Mon, 28 Aug 2000 11:26:23 -0400
Greetings !
Being a novice IPFW installer, I'd appreciate comments, with as much
specificity as possible, regarding setting up a new firewall for a lan.
The default will be:
1- allow all from any to any
the idea being to look everything over.
Next, I'm guessing that everything that originated from the firewall box
is OK, but don't know....
"how to prevent spoofing".
Anyway, I'm thinking next, maybe ....
2- allow all from any to any out xmit <fw_iface>
and then....
3- allow all from any to any in recv <fw_iface> xmit <fw_iface>
In more particular, how can I make sure to let everything in I need but
keep all else out. I know I need to comment out all in inetd.conf that
will not normally be used, but am not sure what's essential.
Any comment on critical permission settings would also be appreciated.
Thanks once again for generous assistance,
Courtney
--
To unsubscribe: mail majordomo at ale.org with "unsubscribe ale" in message body.