Re: CentOS as a router

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



On Fri, 7 Aug 2009, James B. Byrne wrote:

> I am setting up a small CentOS-5.3 host to act as a router.  I have 
> the device configured and working.  What I am trying to accomplish 
> now is configuring the firewall so as to protect both the router and 
> the LAN. [....]

In the past, I'd have tried to craft the iptables rules by hand. Now, 
older and lazier, I rely on shorewall.

Shorewall generally produces pretty good rules. You can "compile" your 
logic to iptables rules without implementing them, so you could use 
shorewall to generate a set of rules that essentially do what you 
want, look them over, and then revise/implement the ones you like.

-- 
Paul Heinlein <> heinlein@xxxxxxxxxx <> http://www.madboa.com/
_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos

[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux