[Asterisk-Users] Fedora Core 2 firewall rules - NO NAT!
Steve Clark
sclark at netwolves.com
Tue Nov 30 13:43:22 MST 2004
Rich Adamson wrote:
>>I managed to get some more IP's from my ISP and am considering putting my
>>Asterisk box on one of them, so it is not behind NAT anymore :)
>>
>>However I need to make sure it is secure, is anybody else doing this
>>who would be
>>so kind as to share their firewall rules/ideas?
>
>
> Lots of folks are doing it, and practically all ITSP's are doing it.
>
> If you're not sure how to secure the box, there are several well written
> documents from various security groups to help you. In a nut shell,
> disable all services that aren't needed, ssh term sessions only, and
> secure those services that you absolutely need. What's left running,
> ensure those apps are up2date.
>
> Rich
>
>
> _______________________________________________
> Asterisk-Users mailing list
> Asterisk-Users at lists.digium.com
> http://lists.digium.com/mailman/listinfo/asterisk-users
> To UNSUBSCRIBE or update options visit:
> http://lists.digium.com/mailman/listinfo/asterisk-users
>
>
gShield is a really good firewall package for linux.
Steve
--
"They that give up essential liberty to obtain temporary safety,
deserve neither liberty nor safety." (Ben Franklin)
"The course of history shows that as a government grows, liberty
decreases." (Thomas Jefferson)
More information about the asterisk-users
mailing list