Forums

Skip to content

Advanced search
  • Quick links
    • Unanswered topics
    • Active topics
    • Search
  • FAQ
  • Login
  • Register
  • Board index Assistance Networking & Security
  • Search

Web-, file-, etc server and internet gateway on the same PC?

Having problems getting connected to the internet or running a server? Wondering about securing your box? Ask here.
Post Reply
Advanced search
3 posts • Page 1 of 1
Author
Message
iverasp
n00b
n00b
Posts: 58
Joined: Mon Oct 11, 2004 8:04 pm

Web-, file-, etc server and internet gateway on the same PC?

  • Quote

Post by iverasp » Sat Jan 21, 2006 2:09 pm

Hi. Our current router (Asus something) is beginning to piss me off way to often, and I need something to replace it with. I used to run a diskless machine with IP-tables and stuff in the closeth, but it was to much work every time I had to shut down some component in the network, and then restarting the router.

I have a server in the basement (P3 800Mhz, 512Mb ram), and it wouldt be hard to move the modem there. Is there anything I should be aware of if using this server as a gateway to the internet with NAT and Ip-tables? Any new security riscs?

Thanks
Top
anonybosh
Guru
Guru
Posts: 324
Joined: Sun Nov 20, 2005 1:45 am

  • Quote

Post by anonybosh » Sat Jan 21, 2006 7:01 pm

I currently use my samba/cups/apache/php/mysql/ssh server as a router/firewall as well. I use the hardened 2.6 kernel, and usually run only the stable installs. I try to keep everything pretty well locked down, watch my logs often, and thus far I haven't had any *visible* security breaches/problems. I am thinking of running weekly backups to another drive though, just to be extra careful.
There certainly are new security risks (having a direct connection to the internet), but as long as you have good ip-tables rules, and pay attention to your logs, you *should* be fine. I can only speak from my experience though...
Top
Parasietje
Apprentice
Apprentice
Posts: 194
Joined: Sun Jan 25, 2004 6:43 pm

  • Quote

Post by Parasietje » Sat Jan 21, 2006 7:55 pm

I think you are less at risk than with a proprietary router. If you lock down your router (e.g. allow no incoming traffic), you should be safe. Also shield off from malformed IP packets (there are some ready-to-use scripts availible on freshmeat.net), or from malformed source addresses (i.e. spoofed packets).
That way, you are sure no-one can enter your box. The proprietary router is more at risk, as you don't know what is going on in there, which OS is running, how tightly it has been sealed, etc.
Top
Post Reply

3 posts • Page 1 of 1

Return to “Networking & Security”

Jump to
  • Assistance
  • ↳   News & Announcements
  • ↳   Frequently Asked Questions
  • ↳   Installing Gentoo
  • ↳   Multimedia
  • ↳   Desktop Environments
  • ↳   Networking & Security
  • ↳   Kernel & Hardware
  • ↳   Portage & Programming
  • ↳   Gamers & Players
  • ↳   Other Things Gentoo
  • ↳   Unsupported Software
  • Discussion & Documentation
  • ↳   Documentation, Tips & Tricks
  • ↳   Gentoo Chat
  • ↳   Gentoo Forums Feedback
  • ↳   Duplicate Threads
  • International Gentoo Users
  • ↳   中文 (Chinese)
  • ↳   Dutch
  • ↳   Finnish
  • ↳   French
  • ↳   Deutsches Forum (German)
  • ↳   Diskussionsforum
  • ↳   Deutsche Dokumentation
  • ↳   Greek
  • ↳   Forum italiano (Italian)
  • ↳   Forum di discussione italiano
  • ↳   Risorse italiane (documentazione e tools)
  • ↳   Polskie forum (Polish)
  • ↳   Instalacja i sprzęt
  • ↳   Polish OTW
  • ↳   Portuguese
  • ↳   Documentação, Ferramentas e Dicas
  • ↳   Russian
  • ↳   Scandinavian
  • ↳   Spanish
  • ↳   Other Languages
  • Architectures & Platforms
  • ↳   Gentoo on ARM
  • ↳   Gentoo on PPC
  • ↳   Gentoo on Sparc
  • ↳   Gentoo on Alternative Architectures
  • ↳   Gentoo on AMD64
  • ↳   Gentoo for Mac OS X (Portage for Mac OS X)
  • Board index
  • All times are UTC
  • Delete cookies

© 2001–2026 Gentoo Foundation, Inc.

Powered by phpBB® Forum Software © phpBB Limited

Privacy Policy

 

 

magic