Koozali.org: home of the SME Server

Legacy Forums => General Discussion (Legacy) => Topic started by: Yuliadi Rumanto on September 27, 1999, 09:55:45 AM

Title: Firewall configuration
Post by: Yuliadi Rumanto on September 27, 1999, 09:55:45 AM
It would be better if e-smith add administration for Firewall configuration entry.
Title: RE: Firewall configuration
Post by: Joseph Morrison on September 27, 1999, 05:03:33 PM
Hello Yuliadi,

We are planning to make the firewall more flexible in the next version (no release date scheduled yet).

Regards,
- Joe
Title: RE: Firewall configuration
Post by: Luis Miguel on October 04, 1999, 03:07:03 AM
Yes, i have the same opinion.
I think it´s very important to improve a secure firewall on e-smith, i think that if they want to enter at my system, my local network, they will do,...i don´t know when, why or who but.
i hope that e-smith developers make a firewall manager like the rest of the distribution ;-)
Title: RE: Firewall configuration
Post by: Charlie Brady on October 05, 1999, 07:36:01 AM
Luis Miguel wrote:

> Yes, i have the same opinion. I think it´s very important to
> improve a secure firewall on e-smith, i think that if they
> want to enter at my system, my local network, they will
> do,...i don´t know when, why or who but. i hope that
> e-smith developers make a firewall manager like the
> rest of the distribution ;-)

I don't believe that there needs to be a seperate manager for
the firewall - and I think it would be a mistake to provide one.
The template configuration systems allows e-smith to provide
a packet filter firewall which exactly matches the services which are configured to run on the server. We don't have that
packet filter running yet, but it could be a transparent upgrade.

I think it would be desirable to have more configurable control over what services are provided by the server (for instance restricting or eliminating IP masquerade), but I then want
an automatically generated firewall specification, not a seperate control interface.