PDA

View Full Version : Best/Easy firewall for FreeBSD??



rach8811
12-07-2001, 01:08 AM
Hi there ppl!

I have a FreeBSD server hanging on my lan from one nic, and off the internet from another nic with a static ip.

I'd like to have a firewall that will steath all the ports I chose, and best to have web based administration though the lan or ssh via localhost.

I know this is more of a wintell hang out, but I thought I would ask.

Thanks all,

Rachel

/dev/hd
12-07-2001, 11:16 AM
Hi rach88**,



Have you tried "Portsentry"? Very configurable and works with BSD



I do believe. Can be had at several ftp sites. Logs all attempts and



even sends them a message of your choosing. :-)



Penguin



PS . Also checkout "Tripwire" or "Firestarter".



WWW.linuxapps.com

Wayne
12-07-2001, 01:04 PM
Can't you ask it at the freebsd mailinglist? You will have more answers there I think. You can also try a mailingslist at www.securityfocus.com or try a search in the forum of www.Whitehats.com. I saw some things about BSD there.

Detrich
12-07-2001, 09:44 PM
Way to go John.., Whoops I mean Wayne. Don't they know this is a Microsoft support group? If they want to talk
something else just instruct them were to go,right?
Very clever.... I'd never have thought of it myself.
BTW,what's a proxy?

Wayne
12-08-2001, 06:54 AM
Don't you know??? A proxy lets you surf anonymously.

Blacksheep
12-08-2001, 08:16 AM
"Don't they know this is a Microsoft support group?"

Says who?

"Don't you know??? A proxy lets you surf anonymously."

Only anonymous proxies and then you are anon only to Internet, not to proxy sysadmin.

rach8811
12-09-2001, 12:18 AM
Tanks /dev/hd and Blacksheep.

Microsoft groupies are so weird LOL.

I looked up Portsentry and it looks rad. Though the BSD version will not drop requests as a firewall will do, but then I learned that IPFW is built into FreeBSD I just have to enable it. Now I just have to learn it LOL!!

And I think I'll put Portsentry on it too!

Thanks guys!

Rachel

Dream_painter
12-10-2001, 09:54 AM
Rachel:
Try downloading zone alarm...I am on a cable modem and use zone alarm...works good...blocks accsess to all ports and is free for home use

good luck


http://www.zonealarm.com\