[TriLUG] looking for linux solution similar to openbsd's authpf

Steve Litt slitt at troubleshooters.com
Sun Sep 15 23:17:37 EDT 2013


LOL, iptables itself is messy.

On Sun, 15 Sep 2013 21:26:18 -0400 (EDT)
Dewey Hylton <plug at hyltown.com> wrote:

> wow, nufw/nuauth looks messy. thanks for the pointer.
> 
> ----- Original Message -----
> > From: "Scott Wysocki" <swysocki at gmail.com>
> > To: "Triangle Linux Users Group General Discussion"
> > <trilug at trilug.org> Sent: Sunday, September 15, 2013 7:11:01 PM
> > Subject: Re: [TriLUG] looking for linux solution similar to
> > openbsd's authpf
> > 
> > On Sun, Sep 15, 2013 at 6:23 PM, Dewey Hylton <plug at hyltown.com>
> > wrote:
> > 
> > > ----- Original Message -----
> > > > From: "Dewey Hylton" <plug at hyltown.com>
> > > > To: "Triangle Linux Users Group General Discussion"
> > > > <trilug at trilug.org>
> > > > Sent: Sunday, September 15, 2013 6:12:52 PM
> > > > Subject: [TriLUG] looking for linux solution similar to
> > > > openbsd's authpf
> > > >
> > > > my google-fu is lacking, though all my searches to date have
> > > > included
> > > > the authpf keyword so i'm likely excluding all the right
> > > > answers. recommendations?
> > > >
> > > > pretty much all my firewall expertise from the past 8-10 years
> > > > involves openbsd's pf, so i assume there's a lot to catch up on
> > > > in
> > > > the iptables world ...
> > >
> > > sorry - i hit 'send' too soon ...
> > >
> > > here's the desired outcome ... by default, iptables on server X
> > > blocks
> > > access to port Y. i successfully login to server X via ssh, and
> > > iptables
> > > gets updated to allow me (my ip) to pass through on port Y.
> > > --
> > > This message was sent to: Scott Wysocki <swysocki at gmail.com>
> > > To unsubscribe, send a blank message to trilug-leave at trilug.org
> > > from that
> > > address.
> > > TriLUG mailing list :
> > > http://www.trilug.org/mailman/listinfo/trilug Unsubscribe or edit
> > > options on the web  :
> > > http://www.trilug.org/mailman/options/trilug/swysocki%40gmail.com
> > > Welcome to TriLUG: http://trilug.org/welcome
> > >
> > 
> > NuFW or its predecessor UFWI is probably what you are looking for.
> > http://www.ufwi.org/
> > --
> > This message was sent to: Dewey Hylton <plug at hyltown.com>
> > To unsubscribe, send a blank message to trilug-leave at trilug.org from
> > that address.
> > TriLUG mailing list : http://www.trilug.org/mailman/listinfo/trilug
> > Unsubscribe or edit options on the web	:
> > http://www.trilug.org/mailman/options/trilug/plug%40hyltown.com
> > Welcome to TriLUG: http://trilug.org/welcome
> > 


More information about the TriLUG mailing list