[ale] What I want for Christmas - wrt IPTABLES

Steve Brown braino420 at gmail.com
Wed Dec 12 10:32:54 EST 2007


On Dec 12, 2007 8:44 AM, Jim Lynch <ale_nospam at fayettedigital.com> wrote:

> I've finally figured out what I want Santa to bring me.  It's a utility
> that I could run on a system with a fairly wide open IPTABLES
> configuration that would log all the activity and somehow let me edit
> that log and feed it into the utility to generate a set of iptables
> directives to permit only what I want to let through.


Is a GUI not an option? Firestarter does what you are saying; it starts you
off not allowing anything, and anything that gets blocked is logged. You can
then check that log and right click on the entries to either allow that IP
addy access to that port, access to all ports, or to open the port up for
everyone.

On a related note, has anyone ever tried Firewall Builder [1]? Yay, nay?

-Steve


[1] http://www.fwbuilder.org/
-------------- next part --------------
An HTML attachment was scrubbed...




More information about the Ale mailing list