Re: Newie questions about security

2007-03-02 Thread Paul Johnson
Celejar wrote: > On Thu, 01 Mar 2007 13:51:11 -0800 > Paul Johnson <[EMAIL PROTECTED]> wrote: > >> Roberto C. Sanchez wrote: >> >> > On Wed, Feb 28, 2007 at 01:21:46PM -0800, Paul Johnson wrote: >> >> >> >> Firestarter and other Linux based firewalls are when you want to build >> >> a >> >> fir

Re: Newie questions about security

2007-03-02 Thread Celejar
On Thu, 01 Mar 2007 13:51:11 -0800 Paul Johnson <[EMAIL PROTECTED]> wrote: > Roberto C. Sanchez wrote: > > > On Wed, Feb 28, 2007 at 01:21:46PM -0800, Paul Johnson wrote: > >> > >> Firestarter and other Linux based firewalls are when you want to build a > >> firewall for your network. You canno

Re: Newie questions about security

2007-03-01 Thread Roberto C. Sanchez
On Thu, Mar 01, 2007 at 01:51:11PM -0800, Paul Johnson wrote: > > I meant more in general. In Linux, while what I said doesn't apply, it's > still bad practice to expect your firewall to do more than firewall. In > Windows (and probably other operating systems), there is no such logical > distin

Re: Newie questions about security

2007-03-01 Thread Paul Johnson
Roberto C. Sanchez wrote: > On Wed, Feb 28, 2007 at 01:21:46PM -0800, Paul Johnson wrote: >> >> Firestarter and other Linux based firewalls are when you want to build a >> firewall for your network. You cannot build a firewall for just the >> computer you want to firewall: Firewalls, by nature,

Re: Newie questions about security

2007-03-01 Thread Paul Johnson
Jordi wrote: > Hello Paul > >> RFC says stealth should never be used. > > And if I don't use stealth, what do I use? I thought by what we talked > here that ports in linux are closed if I don't forward them. Closed sends an actual closed response, stealth is like trying to talk to Terry Schaivo

Re: Newie questions about security

2007-03-01 Thread Roberto C. Sanchez
On Wed, Feb 28, 2007 at 01:21:46PM -0800, Paul Johnson wrote: > > Firestarter and other Linux based firewalls are when you want to build a > firewall for your network. You cannot build a firewall for just the > computer you want to firewall: Firewalls, by nature, must be on dedicated > hardware

Re: Newie questions about security

2007-03-01 Thread Jordi
Hello Greg > Please tell us what Model and make of router you have. My router is Thomson Speedtouch 530v6. In the future I would like to change to a model with wifi, but maybe I will ask this in future in another thread. Jordi -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "

Re: Newie questions about security

2007-02-28 Thread Greg Folkert
On Wed, 2007-02-28 at 22:50 -0800, Jordi wrote: > Hello Paul > > > RFC says stealth should never be used. > > And if I don't use stealth, what do I use? I thought by what we talked > here that ports in linux are closed if I don't forward them. > > > Firestarter and other Linux based firewalls ar

Re: Newie questions about security

2007-02-28 Thread Jordi
Hello Paul > RFC says stealth should never be used. And if I don't use stealth, what do I use? I thought by what we talked here that ports in linux are closed if I don't forward them. > Firestarter and other Linux based firewalls are when you want to build a > firewall for your network. You can

Re: Newie questions about security

2007-02-28 Thread Paul Johnson
Jordi wrote: > Hello, > > I just managed to configure my server and router and ips yesterday and > now I have questions about security. I did a scan of ports and saw the > only open are the ones I opened. I also set my router firewall to > "standard". > > 1) Must I CLOSE the ports that I don't u

Re: Newie questions about security

2007-02-28 Thread Jordi
I think I will use shorewall so. Thanks to all for helping with this decision. On 28 feb, 18:10, "Roberto C. Sanchez" <[EMAIL PROTECTED]> wrote: > On Wed, Feb 28, 2007 at 08:38:31AM -0800, Jordi wrote: > > > I hope to be able to grow in some time and be able to have more dsl > > lines and servers

Re: Newie questions about security

2007-02-28 Thread Roberto C. Sanchez
On Wed, Feb 28, 2007 at 08:38:31AM -0800, Jordi wrote: > > I hope to be able to grow in some time and be able to have more dsl > lines and servers runnig, but in the beginnig even if I don't earn or > ask for money I don't want to give a bad service to people, that is > why fear ddos. I will also

Re: Newie questions about security

2007-02-28 Thread Jordi
Thanks to all for your recomended soft. It seems all people like shorewall, so I will see it. I read that firestarter was easiest, but if you think it is better shorewall, I will use shorewall. Thanks Andrew for such a good explanation. I will compare Tiger and Snort, maybe they can be used toget

Re: Newie questions about security

2007-02-28 Thread Andrew Sackville-West
On Wed, Feb 28, 2007 at 05:38:27AM -0800, Jordi wrote: > Hello, > > I just managed to configure my server and router and ips yesterday and > now I have questions about security. I did a scan of ports and saw the > only open are the ones I opened. I also set my router firewall to > "standard". > >

Re: Newie questions about security

2007-02-28 Thread Roberto C. Sanchez
On Wed, Feb 28, 2007 at 05:38:27AM -0800, Jordi wrote: > Hello, > > I just managed to configure my server and router and ips yesterday and > now I have questions about security. I did a scan of ports and saw the > only open are the ones I opened. I also set my router firewall to > "standard". > >