###WHAT IS This is a bash script suitable for GNU/Linux systems (but it might work on other *nix-like systems too) that is able to filter incoming packets from LAN and WAN based on standard port ...
After securing systems by hiding them completely from the network/internet using Single Packet Authorization, I’ve recently been interested in doing more so-called ‘active’ defense, by implementing ...
I posted a topic about my firewall script a few days ago and got a ton of help. Instead of reviving that topic, I decided to start a new one. <BR><BR>I'm trying to learn iptables firewalling and I ...
I have a server -running Fedora Core release 1 (Yarrow), if that matters- that I have enabled virtual NICs, only one; that is, the actual IP, plus an extra one. The NIC works fine, it starts ...
A shell script that grabs the latest Firehol blocklists and adds it to iptables. Additional blocklists can easily be added by popping their download URLs into the script. By default it's loading the ...
Dear readers, I appear to have set a Paranoid Penguin record—six months spent on one article series. (It has consisted of five installments, with a one-month break between the second and third pieces.
I've been writing a multipart series on building a transparent (bridging) firewall using Linux. Specifically, I'm using the distribution OpenWrt running on a Linksys WRT54GL broadband router, a ...
iptables -t nat -A POSTROUTING -s $LAN -o $ETH_WAN -j SNAT --to-source $WAN iptables -t nat -A POSTROUTING -s $DMZ -o $ETH_WAN -j SNAT --to-source $WAN iptables -t ...
/sbin/iptables -A FORWARD -p all -s 172.16.1.105 -j DROP /sbin/iptables -A FORWARD -p all -s 172.16.1.25 -j DROP /sbin/iptables -A FORWARD -p all -s 172.16.1.78 -j ...