[Asterisk-Users] Fedora Core 2 firewall rules - NO NAT!

Steve Clark sclark at netwolves.com
Tue Nov 30 13:43:22 MST 2004


Rich Adamson wrote:
>>I managed to get some more IP's from my ISP and am considering putting my
>>Asterisk box on one of them, so it is not behind NAT anymore :)
>>
>>However I need to make sure it is secure, is anybody else doing this
>>who would be
>>so kind as to share their firewall rules/ideas?
> 
> 
> Lots of folks are doing it, and practically all ITSP's are doing it.
> 
> If you're not sure how to secure the box, there are several well written
> documents from various security groups to help you. In a nut shell,
> disable all services that aren't needed, ssh term sessions only, and 
> secure those services that you absolutely need. What's left running,
> ensure those apps are up2date.
> 
> Rich
> 
> 
> _______________________________________________
> Asterisk-Users mailing list
> Asterisk-Users at lists.digium.com
> http://lists.digium.com/mailman/listinfo/asterisk-users
> To UNSUBSCRIBE or update options visit:
>    http://lists.digium.com/mailman/listinfo/asterisk-users
> 
> 

gShield is a really good firewall package for linux.

Steve

-- 

"They that give up essential liberty to obtain temporary safety,
deserve neither liberty nor safety."  (Ben Franklin)

"The course of history shows that as a government grows, liberty
decreases."  (Thomas Jefferson)





More information about the asterisk-users mailing list