[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[ale] What I want for Christmas - wrt IPTABLES



On Dec 12, 2007 8:44 AM, Jim Lynch <ale_nospam at fayettedigital.com> wrote:

> I've finally figured out what I want Santa to bring me.  It's a utility
> that I could run on a system with a fairly wide open IPTABLES
> configuration that would log all the activity and somehow let me edit
> that log and feed it into the utility to generate a set of iptables
> directives to permit only what I want to let through.


Is a GUI not an option? Firestarter does what you are saying; it starts you
off not allowing anything, and anything that gets blocked is logged. You can
then check that log and right click on the entries to either allow that IP
addy access to that port, access to all ports, or to open the port up for
everyone.

On a related note, has anyone ever tried Firewall Builder [1]? Yay, nay?

-Steve


[1] http://www.fwbuilder.org/
-------------- next part --------------
An HTML attachment was scrubbed...