File: arno-iptables-firewall.8

package info (click to toggle)
arno-iptables-firewall 2.0.1.c-1
  • links: PTS, VCS
  • area: main
  • in suites: wheezy
  • size: 1,348 kB
  • sloc: sh: 5,991; makefile: 18
file content (62 lines) | stat: -rw-r--r-- 2,443 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
.TH "ARNO-IPTABLES-FIREWALL" "8" "March 14, 2012" "Michael Hanke" ""
.SH "NAME"
\fBarno\-iptables\-firewall\fR \- Single\- & multi\-homed firewall script with DSL/ADSL support.
.SH "SYNOPSIS"
.B /etc/init.d/arno\-iptables\-firewall 
[start|stop|status|force\-reload|restart]
.SH "DESCRIPTION"
\fBarno\-iptables\-firewall\fP is an iptables configuration script with support for both IPv4 & IPv6.
While it is extremely easy to use one can nevertheless use it in quite 
complicated environments.
.P
All available options are explained in the extensively documented 
configuration file.
.P
The external interface of the system needs to be set up properly in the 
firewalls configuration file (EXT_IF). 
The default behavior of the firewall is to deny all incoming connections. 
.P
For additional requirements not covered by the configuration file 
custom iptables rules can be placed in 
/etc/arno\-iptables\-firewall/custom\-rules. 
This file is automatically parsed by the service script. 
.P
See the README file (eg. in  
.I  /usr/(local/)share/doc/arno\-iptables\-firewall)
for an example how to manage logging of firewall events through 
.B  syslogd.
.P
The \fBarno\-fwfilter\fR script can be used to make the firewall logs more readable for humans (see manpage).
.P
Several plugins for the firewall script are available online. Plugins can
be downloaded from
.I http://rocky.eld.leidenuniv.nl/ 
Please see the README file 
for more information.
.SH "FILES"
.nf 
.ft B
.ft
/etc/init.d/arno\-iptables\-firewall              system service script
/etc/arno\-iptables\-firewall/firewall.conf       firewall configuration
/etc/arno\-iptables\-firewall/conf.d/             firewall configuration directory
/etc/arno\-iptables\-firewall/custom\-rules        custom iptables rules
/etc/arno\-iptables\-firewall/blocked\-hosts       host blacklist
/etc/arno\-iptables\-firewall/mac\-addresses       mac filter list
.fi
.LP 
Please note, that the last two files do exist in the initial configuration and their use is disabled in 
.B /etc/arno\-iptables\-firewall/firewall.conf
.SH "SEE ALSO"
.BR iptables "(8)",
.BR arno\-fwfilter "(1)",
.BR syslog.conf "(5)"
.PP 
The
.I http://rocky.eld.leidenuniv.nl/
web site.
.SH "AUTHOR"
arno\-iptables\-firewall was written by Arno van Amersfoort <arnova@rocky.eld.leidenuniv.nl>.
.PP 
This manual page was written by Michael Hanke <michael.hanke@gmail.com>,
for the Debian project (but may be used by others).