Skip to main content

Iptables - Firewall for Linux



Let's briefly look at some virtual firewalls in Linux. This is Iptables, running in my Ubuntu Server. Remember that?




What is CHAIN in this context? My best guess is 'the route a packet takes'. Think "At this point in the process, what should happen to this packet?" [1] Here, it's saying "Forward everything!". At which point, you may as well not have a firewall at all.



So let's set some rules on this bad boy;






The command is going 'super user within iptables, append the INPUT chain regarding the protocol tcp'


Let's try it with the example at the second link;



lo = Loopback
j = target, which must be set with each new rule. After all, how will iptables know to ACCEPT or DROP, RETURN?
So, that first rule isn't 'set' without it. Let's try it again;




Today I was reminded that Cases Matter.

Now we're looking good! Let's save them with sudo /sbin/iptables-save. I added a few more rules to this, namely DROP this CERTAIN connection, without saving.

There is plenty more information at the above links, so check them out, and I'll be revisiting more Linux and open source firewalls in the future.




Educate others -

Comments

Popular posts from this blog

What Do You Need? [AKA; List of Offered Services] (2020)

I am a remote consultant. I enjoy having the flexibility to take on temporary projects from time to time! I start at part-time, temp work for now. If we like each other, we can renegotiate. If anything sounds weird, out there, or unusual - Feel free to e-mail me. Doesn't have to be tech-related. I just have to find it interesting and flexible.


What I do for you:
Simplified writing about tech. [Example Job Description, 2, 3] You want to pay me to write more of *waves hand* this blog? I am game.
Technical Analyst [Example Job Description]
UX Auditing [See Here]eCommerce merchandising [See Here]Entry-Level Web Support [Example Job Description]
Email Marketing Specialist [Example Job Description]  ProofreadingText-based support [Example Description]. 
The following is what I was trained in. Roles will be considered if I feel it's the best fir for you. Still part-time, contract, and/or temporary
Azure
Cisco routing and switching technician

Volunteering:
Find me on Jumpstart and CareerVill…

Azure Networking Options - Core Cloud Services

I have done a lot of AWS things on here. Time to give Azure some attention. After all, since employers don't think Cisco or COMPTIA certifications are important, maybe Microsoft ones are?

First, let's really think about why these are the two biggest cloud services providers in the world:

They've been doing internet things for a long time.Amazon launched in 1995, a virtual bookstore.
Microsoft, well, you know. 

They've lived, breathed, and frankly, created, infrastructure that we use today, that they're selling to us today. Of course the Store of Everything and the Company of Everything would encourage us to put everything in their hands.

Also: Azure has a lot less silly names for modules. Important. I appreciate straightforwardness.


I said 'a lot less', not '100% sensible names'

Microsoft has a clear set of Azure Fundamentals that anyone can interact with. Let's talk about networking basics, basically to say, again, "Hi, employers, I have an …

Search and Infiltrate: How to Deeply Investigate a Company's People [6/4/2020]

Latest Update - 6/4/2020


This is a bit of an impromptu post after reading this article.

I had a small thread about this on Twitter, a blog post is a lot better to get the information out in a clear way.

Have you ever used Recruitin.net, came across a group of people who match Your Dream Company, Dream Location, and do your Dream Job on LinkedIn...and they're not active?

What was the POINT, am I right?  A place for professionals to network, but they're not active ...because they have a job to do! You want to be like that!

Unfortunately, in this day and age, unless you have a 'relationship' with someone, they're not going to help you.

Hm. 

(Note: 'relationship' is different than relationship).

I'm not here to talk bad about recruiters - They have a difficult job, I know I couldn't do it! - And even they want a relationship before they place you somewhere, competency be damned.

What do you do instead?

This:

(Note; I'm using my own URL for this and …