Koozali.org: home of the SME Server
Legacy Forums => General Discussion (Legacy) => Topic started by: Yuliadi Rumanto on September 27, 1999, 09:55:45 AM
-
It would be better if e-smith add administration for Firewall configuration entry.
-
Hello Yuliadi,
We are planning to make the firewall more flexible in the next version (no release date scheduled yet).
Regards,
- Joe
-
Yes, i have the same opinion.
I think it´s very important to improve a secure firewall on e-smith, i think that if they want to enter at my system, my local network, they will do,...i don´t know when, why or who but.
i hope that e-smith developers make a firewall manager like the rest of the distribution ;-)
-
Luis Miguel wrote:
> Yes, i have the same opinion. I think it´s very important to
> improve a secure firewall on e-smith, i think that if they
> want to enter at my system, my local network, they will
> do,...i don´t know when, why or who but. i hope that
> e-smith developers make a firewall manager like the
> rest of the distribution ;-)
I don't believe that there needs to be a seperate manager for
the firewall - and I think it would be a mistake to provide one.
The template configuration systems allows e-smith to provide
a packet filter firewall which exactly matches the services which are configured to run on the server. We don't have that
packet filter running yet, but it could be a transparent upgrade.
I think it would be desirable to have more configurable control over what services are provided by the server (for instance restricting or eliminating IP masquerade), but I then want
an automatically generated firewall specification, not a seperate control interface.