Talk:Simple stateful firewall

From ArchWiki
Revision as of 17:35, 9 April 2010 by Thestinger (Talk | contribs) (header)

Jump to: navigation, search

I'm doing a rewrite of this article to make it more correct and simple, and also to cleanup a lot of unnecessary info. Once the cleanup, etc is done the merge to the iptables article that is suggested on the iptables discussion page will make a lot more sense Thestinger 07:28, 12 March 2010 (EST)

Except for a few more tweaks, I'm pretty much done with the Simple_stateful_firewall_HOWTO#Firewall_for_a_single_machine section. I'm going to rewrite the script at the bottom to contain the new rules. Also, I plan on adding a section about the recent module to the "hide your computer" section that shows how to trick portscanners into thinking open ports are closed. Once that's done, I'll read over the NAT section and see what I can do to improve it. :Thestinger 10:25, 15 March 2010 (EDT)
Still to finish: port knocking section, ssh bruteforce protection with recent module, rewrite of NAT section, firewall script. I'm probably going to end up rewriting a lot of the other stuff too, to make the article/guide easier to follow. Thestinger 12:50, 8 April 2010 (EDT)


The NAT section here is incomplete and there is a far superior article here: NAT'ing firewall - Share your broadband connection. If no one opposes it, I'm going to work on improving NAT'ing firewall - Share your broadband connection and then get rid of the NAT section here once it has no unique information. This article is for a "Simple Stateful Firewall", not an NAT. Thestinger 13:35, 9 April 2010 (EDT)