We’ve all run into UFW on Linux systems that were already in use. When firewall problems show up, they almost never show up in new or surprising ways. We at Linux Security want to help other admins recognize the kind of UFW problem they’re dea...
Many people have heard the term proxy server but don't know how it can benefit them. We've all heard of firewalls, and we all know the value of a good firewall. Some of you might even be using a firewall proxy to make life easier. For those of you who are unaware of what a proxy server or firewall proxy is, let me first explain the concept, and then I'll show you how to set one up on Linux.. . .
This is part 2 of a 3-part series on how you can quickly secure your system with a Linux-based SOHO firewall. In this segment, the author guides you through product selections for your particular needs and discusses hardware and software costs, . . .
You've ordered a new firewall, and you want to get it running on your network ASAP. Your first reaction is probably to put every client and server behind it. That's fine for a small company, but a larger company should consider . . .
To assuage any fears, this article will show you how to set up a Linux-based personal firewall for the SOHO (small office, home office), broadband-attached network. It also takes a look at several SOHO firewalls and determines whether or not they . . .
This month I will look at what we might call "best practices" for internetworking remote offices. It is arguably an old topic--we've been connecting remote offices over Virtual Private Networks (VPNs) for a few years now. It is one of the main purposes for VPNs, second only to secure dial-in connections. And yet, I think most of us do it wrong.. . .
Certainly your organization uses a firewall, most likely at your network borders. And many of you have adopted firewalls to protect your internal network segments, servers, and workstations. Most of these solutions are software-based-you must load that software on top of . . .
Firewalls using Linux Kernel 2.4.x with IPTables could potentially be compromised as a result of bad logic in the FTP PORT processing. "There is a security flaw in the manner in which the PORT command is interpreted and processed. Essentially, you . . .
I'm sure many of you have been wondering how to use iptables to set up a basic firewall. I was wondering the same thing for a long time until I recently figured it out. I'll try to explain the basics to . . .
If you're upgrading your firewall, or installing one on your network for the first time, you'll discover that firewall technology has changed a lot in the last several years. How do you select one that's appropriate for your business? Before you . . .
Last December, a bank in Southern California received a call from an online customer asking why one of the bank's computers was trying to hack into his system. It turned out that the machine doing the hacking belonged to the bank's . . .
This howto walks you through the process of building one of the most stable and secure firewalls available - a FreeBSD-STABLE firewall with IPFILTER. As a part of the installation process, all services will be disabled except OpenSSH, which will have . . .
NetMAX FireWall from Cybernet Systems is a smooth-running, easily configurable firewall, if you can get past its annoying setup and installation. I'd like to mention some useful-looking features that I was unable to test. NetMAX FireWall includes a traffic monitor that . . .
This part of the article gives an overview of ways to use your DSL machine as gateway for your home or office network, and goes through the basic steps to setup and maintain security to machines connected directly to the Internet. . . .
As of 2.4, ipchains is a thing of the past. The replacement for ipchains is Netfilter's iptables. What does this mean to the end user? Typically it means little beyond the fact that suddenly their ipmasq script doesn't work. So, for . . .
Richard Morrell and Lawrence Manning, co-authors of the SmoothWall Open Source firewall project, have joined SlashTCO Limited, the UK Open Source services and information provider. Richard and Lawrence will continue to work on a number of Open Source projects, including . . .
Lately, hackers have discovered they can sneak into your computer by sending look-alike imposters to the firewall's gate. The hackers simply rename a snooping program or a virus so that it has the same file name as your browser or e-mail . . .
This article will look at ways for users to get more out of that faithful but somewhat dull firewall. In particular, we will look at traffic shaping, a technique that prevents high-bandwidth traffic like Napster from making other Internet applications, such . . .
Ron Trepanier knew that the Internet could be a dangerous place, but it wasn't until he installed a personal firewall that he realized his home computer was coming under daily attack. The mechanical engineer, who lives outside Toronto, recently documented 30 . . .
While firewall vendors espouse the virtues or their security solutions, others believe that even the most technologically advanced firewall can't offer companies all of the protection they need to ensure that data is safe from both external and internal threats. . . .
Scott Thomason writes: "In this article, I discuss the origin and basic structure of IP in enough detail to continue on with an exploration of the fundamentals of packet filtering firewalls. An extensive sample firewall showing the use of the Linux . . .