| Justin Grote 2005-04-27, 5:45 pm |
| rbreidenstein@bigfoot.com wrote:
> what firewall is being used in a default setup of OES?
Most firewalls essentially leverage iptables, which is the kernel based
firewall of Linux. Of no exception to this is SuSEFirewall2, which is
the default OES firewall.
While SuSEFirewall is great, it really only is useful for "personal"
firewalling, i.e. blocking node ports on a client or server. If you are
looking for a network firewall (with multiple interfaces and a DMZ,
etc.), I highly recommend you check out Shorewall:
http://www.shorewall.net/
It is just a front-end to iptables like SuSEFirewall, but it is *Far*
more flexible. I have firewalls with 6 interfaces, 12 zones, multiple
NAT destinations, pools, and translations, and 200+ rule definitions
that run Shorewall beautifully.
Unfortunately SuSE doesn't ship a Shorewall RPM with OES, but the one
from Shorewall's site works just fine, and I plan to make an OES/SLES9
specific one available on my RPM site as well.
--
__________________________
Justin Grote
Network Architect
JWG Networks
|