Differences between revisions 4 and 5
Revision 4 as of 2017-06-05 08:00:34
Size: 1013
Editor: PieterSmit
Comment:
Revision 5 as of 2017-06-05 08:06:53
Size: 1040
Editor: PieterSmit
Comment:
Deletions are marked like this. Additions are marked like this.
Line 7: Line 7:
   * Very compact syntax, easy to read.   * Very compact syntax, easy to read.
Line 16: Line 16:
   * sudo apt install whois jq nfacct traceroute graphviz    * sudo apt install whois jq nfacct traceroute graphviz ipset iprange tcpdump
Line 19: Line 19:
 * sudo apt install curl wget git unzip screen
 * sudo dpkg -i firehol-tools_3.1.1+ds-1_all.deb firehol-tools-doc_3.1.1+ds-1_all.deb
   * sudo apt install curl wget git unzip screen
   * sudo dpkg -i firehol-tools_3.1.1+ds-1_all.deb firehol-tools-doc_3.1.1+ds-1_all.deb

FireHol - Firewall

  • Links: SecurityFirewall linux/firewall

  • A great tool to manage Linux iptables firewall rules
    • Simple bash interpreter.
      • Very compact syntax, easy to read.
    • Support IPv4 and IPv6
    • Same syntax used for QOS rules.
    • Integrates with IPSET for black listing etc.
    • Easy to extend , and supports multi up-link load-balancing.

Install Latest

  • Download debian SID/TESTing .deb packages
  • Firehol
    • sudo apt install whois jq nfacct traceroute graphviz ipset iprange tcpdump
    • sudo dpkg -i firehol_3.1.1+ds-1_all.deb firehol-common_3.1.1+ds-1_all.deb firehol-doc_3.1.1+ds-1_all.deb
  • Firehol-tools
    • sudo apt install curl wget git unzip screen
    • sudo dpkg -i firehol-tools_3.1.1+ds-1_all.deb firehol-tools-doc_3.1.1+ds-1_all.deb

IPSET

  • Install tool
    • $ sudo apt install ipset
  • Install tool
    • $ sudo apt install iprange
  • Add iptables support
    • $ sudo apt install xtables-addons-common

...

Linux/FireHol (last edited 2022-07-12 10:44:53 by PieterSmit)