Re: Firewall and Laptop

2005-01-03 Thread Derek Broughton
On Friday 31 December 2004 14:21, Marcus C. Gottwald wrote: > > I do like the way iptables is used in woody: You create your > chains and rules any way you like and once you're done, you tell > it to save the current state (by executing > "/etc/init.d/iptables save active"). You can easily make cop

Re: Firewall and Laptop

2004-12-31 Thread Bill Moseley
On Fri, Dec 31, 2004 at 07:21:35PM +0100, Marcus C. Gottwald wrote: > Out of curiosity: What features are expected from a config tool? > On a laptop computer, you'd seldom need a lot more than to allow > outgoing, related or established traffic plus incoming SSH, > wouldn't you? A friend forgot hi

Re: Firewall and Laptop

2004-12-31 Thread Marcus C. Gottwald
Derek Broughton wrote (Fri 2004-Dec-31 11:37:04 -0400): > ... It's not reflexive > though - I don't know of a firewall tool that can take a firewall script as > _input_, so once you modify the script, you can't use the GUI tool any more > without losing the hand edited changes. If anyone does

Re: Firewall and Laptop

2004-12-31 Thread Daniel Pittman
On 1 Jan 2005, Bill Moseley wrote: > Which of the firewall packages is closest to building iptables rules > by hand? >From my experience, firehol is the tool that gets in the way the least. You can write raw iptables calls with it, in fact, if you really want to abuse it. Then you only get the 't

Re: Firewall and Laptop

2004-12-31 Thread Derek Broughton
On Friday 31 December 2004 10:54, Bill Moseley wrote: > Which of the firewall packages is closest to building iptables rules > by hand? > > I, for one, prefer to have just one file that contains the iptables > commands to build the firewall. The front-end tools are nice but I That's exactly what

Re: Firewall and Laptop

2004-12-31 Thread Bill Moseley
Which of the firewall packages is closest to building iptables rules by hand? I, for one, prefer to have just one file that contains the iptables commands to build the firewall. The front-end tools are nice but I feel like they make me learn about how to run their tool instead of how to work with

Re: Firewall and Laptop

2004-12-30 Thread Daniel Pittman
On 30 Dec 2004, Zachary Uram wrote: > I've been meaning to setup a firewall and wonder if anyone has setup > an iptables script or can recommend a good program tailored for a > laptop which is not connected 24x7 (dialup) and receives dynamic IP > each session (determined by my ISP's gateway) runnin

Re: Firewall and Laptop

2004-12-30 Thread Derek Broughton
On Thursday 30 December 2004 12:59, Keith Nasman wrote: > Derek Broughton wrote: [of firestarter] > > OK, off the top: > > - it needs 22 other gnome apps I didn't want. No big deal if you're > > already using gnome. > > > > - it still can't configure an interface it isn't actively connected to.

Re: Firewall and Laptop

2004-12-30 Thread Keith Nasman
Derek Broughton wrote: On Thursday 30 December 2004 10:23, Derek Broughton wrote: On Thursday 30 December 2004 09:28, Ryan D'Baisse wrote: On Thu, 30 Dec 2004 09:06:03 -0400, Derek Broughton <[EMAIL PROTECTED]> wrote: Did firestarter get any documentation yet? I have tried it a few times. It looks

Re: Firewall and Laptop

2004-12-30 Thread Derek Broughton
On Thursday 30 December 2004 10:23, Derek Broughton wrote: > On Thursday 30 December 2004 09:28, Ryan D'Baisse wrote: > > On Thu, 30 Dec 2004 09:06:03 -0400, Derek Broughton > > > > <[EMAIL PROTECTED]> wrote: > > > Did firestarter get any documentation yet? I have tried it a few > > > times. It lo

Re: Firewall and Laptop

2004-12-30 Thread Derek Broughton
On Thursday 30 December 2004 09:28, Ryan D'Baisse wrote: > On Thu, 30 Dec 2004 09:06:03 -0400, Derek Broughton > > <[EMAIL PROTECTED]> wrote: > > Did firestarter get any documentation yet? I have tried it a few times. > > It looks like it's on the right track, but it had useless documentation. >

Re: Firewall and Laptop

2004-12-30 Thread Ryan D'Baisse
On Thu, 30 Dec 2004 09:06:03 -0400, Derek Broughton <[EMAIL PROTECTED]> wrote: > > > Did firestarter get any documentation yet? I have tried it a few times. It > looks like it's on the right track, but it had useless documentation. It > just wasn't worth the effort. > If I may offer my $0.02,

Re: Firewall and Laptop

2004-12-30 Thread Derek Broughton
On Wednesday 29 December 2004 20:35, Keith Nasman wrote: > Zachary Uram wrote: > > Hi, > > > > I've been meaning to setup a firewall and wonder if anyone has setup > > an iptables script or can recommend a good program tailored for a > > laptop which is not connected 24x7 (dialup) and receives dyna

Re: Firewall and Laptop

2004-12-29 Thread Zachary Uram
Hi Keith, Ya, sorry I didn't mention it earlier. I have a Dell Latitude C600 laptop. Ok I will see if there is a firestarter package in Debian unstable. Thanks, Zach On Wed, 29 Dec 2004 16:35:13 -0800, Keith Nasman <[EMAIL PROTECTED]> wrote: > Zach, > > You didn't mention you were running a GUI

Re: Firewall and Laptop

2004-12-29 Thread Keith Nasman
Zachary Uram wrote: Hi, I've been meaning to setup a firewall and wonder if anyone has setup an iptables script or can recommend a good program tailored for a laptop which is not connected 24x7 (dialup) and receives dynamic IP each session (determined by my ISP's gateway) running over PPP? I have k

Firewall and Laptop

2004-12-29 Thread Zachary Uram
Hi, I've been meaning to setup a firewall and wonder if anyone has setup an iptables script or can recommend a good program tailored for a laptop which is not connected 24x7 (dialup) and receives dynamic IP each session (determined by my ISP's gateway) running over PPP? I have kernel 2.4.18 and ru