Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 21 Sep 2001 08:59:23 +0300
From:      Giorgos Keramidas <charon@labs.gr>
To:        Oscar Castaneda <oscarcvt@hotmail.com>
Cc:        freebsd-questions@FreeBSD.ORG
Subject:   Re: workstation firewall, how secure is it?
Message-ID:  <20010921085923.A41393@hades.hell.gr>
In-Reply-To: <F1584HGXAwxXSXI3acH00000261@hotmail.com>
References:  <F1584HGXAwxXSXI3acH00000261@hotmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Oscar Castaneda <oscarcvt@hotmail.com> wrote:
> 
> I have freebsd installed, and im considering configuring it as a firewall 
> using ipf and ipnat. However I dont want too many tradeoffs in functionality 
> 
> and usability (X for example). Still i wonder how secure a solution this is. 
> 
> ??

Without describing the 'solution' in more detail, it's hard to guess.

> Does anyone have any recomendations?  unfortunately i don't have a spare pc 
> i can use, all i have is my current (functional thank god) workstation...
> are there any howto's or guides for carrying this out on a pc workstation i 
> will be using ALL day?

I'm writing this message on a machine that runs FreeBSD (only).

The same machine runs X11 when I feel like writing something that needs a bit
more colour than the console can provide (such as SGML in XEmacs), and it also
uses ipfilter to filter incoming and outgoing traffic when I'm connected to
the net.

The samples of ipfilter in /usr/src/contrib/ipfilter/samples were what I
started to read when I was trying to build my own set of rules for this
firewall.  Guides and tutorials at www.freebsd.org, www.freebsddiary.org and
www.daemonnews.org also helped a lot.

To make a long story short.  Yes, what you're asking, can be done.

-giorgos

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010921085923.A41393>