372 lines
5.5 KiB
HTML
372 lines
5.5 KiB
HTML
<HTML
|
|
><HEAD
|
|
><TITLE
|
|
>Networking -Management, Firewall, Masquerading and Forwarding</TITLE
|
|
><META
|
|
NAME="GENERATOR"
|
|
CONTENT="Modular DocBook HTML Stylesheet Version 1.60"><LINK
|
|
REL="HOME"
|
|
TITLE="Securing and Optimizing Linux"
|
|
HREF="index.html"><LINK
|
|
REL="PREVIOUS"
|
|
TITLE="Create a emergency Rescue and Boot floppy disk"
|
|
HREF="chap7sec87.html"><LINK
|
|
REL="NEXT"
|
|
TITLE="TCP/IP -Network Management"
|
|
HREF="tcp-ip.html"></HEAD
|
|
><BODY
|
|
CLASS="part"
|
|
BGCOLOR="#FFFFFF"
|
|
TEXT="#000000"
|
|
LINK="#0000FF"
|
|
VLINK="#840084"
|
|
ALINK="#0000FF"
|
|
><DIV
|
|
CLASS="NAVHEADER"
|
|
><TABLE
|
|
WIDTH="100%"
|
|
BORDER="0"
|
|
CELLPADDING="0"
|
|
CELLSPACING="0"
|
|
><TR
|
|
><TH
|
|
COLSPAN="3"
|
|
ALIGN="center"
|
|
>Securing and Optimizing Linux: RedHat Edition -A Hands on Guide</TH
|
|
></TR
|
|
><TR
|
|
><TD
|
|
WIDTH="10%"
|
|
ALIGN="left"
|
|
VALIGN="bottom"
|
|
><A
|
|
HREF="chap7sec87.html"
|
|
>Prev</A
|
|
></TD
|
|
><TD
|
|
WIDTH="80%"
|
|
ALIGN="center"
|
|
VALIGN="bottom"
|
|
></TD
|
|
><TD
|
|
WIDTH="10%"
|
|
ALIGN="right"
|
|
VALIGN="bottom"
|
|
><A
|
|
HREF="tcp-ip.html"
|
|
>Next</A
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
><HR
|
|
ALIGN="LEFT"
|
|
WIDTH="100%"></DIV
|
|
><DIV
|
|
CLASS="PART"
|
|
><A
|
|
NAME="AEN5891"
|
|
></A
|
|
><DIV
|
|
CLASS="TITLEPAGE"
|
|
><H1
|
|
CLASS="title"
|
|
>4. Networking -Management, Firewall, Masquerading and Forwarding</H1
|
|
><DIV
|
|
CLASS="PARTINTRO"
|
|
><A
|
|
NAME="AEN5893"
|
|
></A
|
|
><DIV
|
|
CLASS="mediaobject"
|
|
><P
|
|
><IMG
|
|
SRC="./Annimals/Chapter10.gif"
|
|
ALT="PIG"
|
|
></IMG
|
|
></P
|
|
></DIV
|
|
><BLOCKQUOTE
|
|
CLASS="ABSTRACT"
|
|
><DIV
|
|
CLASS="abstract"
|
|
><A
|
|
NAME="AEN5899"
|
|
></A
|
|
><P
|
|
></P
|
|
><P
|
|
> Until now, we have not tinkered with the networking capabilities of Linux. Linux is one of the best existing operating systems in the world for networking features. Most Internet sites around the world already know this, and have used it for
|
|
quite some time. Understanding your hardware network and all files related to it is very important if you want to have a full control of what happens on your server. Good knowledge of primary networking commands is vital. Network management
|
|
covers a wide variety of topics. In general, it includes gathering statistical data and status of parts of your network, and taking action as necessary to deal with failures and other changes.
|
|
</P
|
|
><P
|
|
></P
|
|
></DIV
|
|
></BLOCKQUOTE
|
|
></DIV
|
|
><DIV
|
|
CLASS="TOC"
|
|
><DL
|
|
><DT
|
|
><B
|
|
>Table of Contents</B
|
|
></DT
|
|
><DT
|
|
>8. <A
|
|
HREF="tcp-ip.html"
|
|
><SPAN
|
|
CLASS="acronym"
|
|
>TCP/IP</SPAN
|
|
> -Network Management</A
|
|
></DT
|
|
><DD
|
|
><DL
|
|
><DT
|
|
>8.1. <A
|
|
HREF="chap8sec88.html"
|
|
>Multiple Ethernet Card per Machine</A
|
|
></DT
|
|
></DL
|
|
></DD
|
|
><DT
|
|
>9. <A
|
|
HREF="file-netfunc.html"
|
|
>Files -Networking Functionality</A
|
|
></DT
|
|
><DD
|
|
><DL
|
|
><DT
|
|
>9.1. <A
|
|
HREF="chap9sec89.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/HOSTNAME</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.2. <A
|
|
HREF="chap9sec90.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/sysconfig/network-scripts/ifcfg-ethN</TT
|
|
> files</A
|
|
></DT
|
|
><DT
|
|
>9.3. <A
|
|
HREF="chap9sec91.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/resolv.conf</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.4. <A
|
|
HREF="chap9sec92.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/host.conf</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.5. <A
|
|
HREF="chap9sec93.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/sysconfig/network</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.6. <A
|
|
HREF="chap9sec94.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/sysctl.conf</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.7. <A
|
|
HREF="chap9sec95.html"
|
|
>The <TT
|
|
CLASS="filename"
|
|
>/etc/hosts</TT
|
|
> file</A
|
|
></DT
|
|
><DT
|
|
>9.8. <A
|
|
HREF="chap9sec96.html"
|
|
>Config <SPAN
|
|
CLASS="acronym"
|
|
>TCP/IP</SPAN
|
|
> Networking manually -command line</A
|
|
></DT
|
|
></DL
|
|
></DD
|
|
><DT
|
|
>10. <A
|
|
HREF="soft-netfirew.html"
|
|
>Networking -Firewall</A
|
|
></DT
|
|
><DD
|
|
><DL
|
|
><DT
|
|
>10.1. <A
|
|
HREF="chap10sec97.html"
|
|
>Policy, Guidelines <SPAN
|
|
CLASS="abbrev"
|
|
>etc.</SPAN
|
|
></A
|
|
></DT
|
|
><DT
|
|
>10.2. <A
|
|
HREF="chap10sec98.html"
|
|
>The topology</A
|
|
></DT
|
|
><DT
|
|
>10.3. <A
|
|
HREF="chap10sec99.html"
|
|
>Build a kernel with <TT
|
|
CLASS="literal"
|
|
>IPCHAINS</TT
|
|
> Firewall support</A
|
|
></DT
|
|
><DT
|
|
>10.4. <A
|
|
HREF="chap10sec100.html"
|
|
>Rules used in the Firewall script files</A
|
|
></DT
|
|
><DT
|
|
>10.5. <A
|
|
HREF="chap10sec101.html"
|
|
>Source Address Filtering</A
|
|
></DT
|
|
></DL
|
|
></DD
|
|
><DT
|
|
>11. <A
|
|
HREF="fwall-scripts.html"
|
|
>The firewall scripts files</A
|
|
></DT
|
|
><DD
|
|
><DL
|
|
><DT
|
|
>11.1. <A
|
|
HREF="chap11sec102.html"
|
|
>Config <TT
|
|
CLASS="filename"
|
|
>/etc/rc.d/init.d/firewall</TT
|
|
> script file -Web Server</A
|
|
></DT
|
|
><DT
|
|
>11.2. <A
|
|
HREF="chap11sec103.html"
|
|
>Config <TT
|
|
CLASS="filename"
|
|
>/etc/rc.d/init.d/firewall</TT
|
|
> script file - Mail Server</A
|
|
></DT
|
|
></DL
|
|
></DD
|
|
><DT
|
|
>12. <A
|
|
HREF="Masq-forward.html"
|
|
>Networking Firewall -Masquerading and Forwarding</A
|
|
></DT
|
|
><DD
|
|
><DL
|
|
><DT
|
|
>12.1. <A
|
|
HREF="chap12sec104.html"
|
|
>Build a kernel with Firewall Masquerading and Forwarding support</A
|
|
></DT
|
|
><DT
|
|
>12.2. <A
|
|
HREF="chap12sec105.html"
|
|
>Config <TT
|
|
CLASS="filename"
|
|
>/etc/rc.d/init.d/firewall</TT
|
|
> script file -Gateway Server</A
|
|
></DT
|
|
><DT
|
|
>12.3. <A
|
|
HREF="chap12sec106.html"
|
|
>Configure script for Example Gateway Server</A
|
|
></DT
|
|
><DT
|
|
>12.4. <A
|
|
HREF="chap12sec107.html"
|
|
>Deny access to some address</A
|
|
></DT
|
|
><DT
|
|
>12.5. <A
|
|
HREF="chap12sec108.html"
|
|
><TT
|
|
CLASS="literal"
|
|
>IPCHAINS</TT
|
|
> Administrative Tools</A
|
|
></DT
|
|
></DL
|
|
></DD
|
|
></DL
|
|
></DIV
|
|
></DIV
|
|
></DIV
|
|
><DIV
|
|
CLASS="NAVFOOTER"
|
|
><HR
|
|
ALIGN="LEFT"
|
|
WIDTH="100%"><TABLE
|
|
WIDTH="100%"
|
|
BORDER="0"
|
|
CELLPADDING="0"
|
|
CELLSPACING="0"
|
|
><TR
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="left"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="chap7sec87.html"
|
|
>Prev</A
|
|
></TD
|
|
><TD
|
|
WIDTH="34%"
|
|
ALIGN="center"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="index.html"
|
|
>Home</A
|
|
></TD
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="right"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="tcp-ip.html"
|
|
>Next</A
|
|
></TD
|
|
></TR
|
|
><TR
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="left"
|
|
VALIGN="top"
|
|
>Create a emergency Rescue and Boot floppy disk</TD
|
|
><TD
|
|
WIDTH="34%"
|
|
ALIGN="center"
|
|
VALIGN="top"
|
|
> </TD
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="right"
|
|
VALIGN="top"
|
|
><SPAN
|
|
CLASS="acronym"
|
|
>TCP/IP</SPAN
|
|
> -Network Management</TD
|
|
></TR
|
|
></TABLE
|
|
></DIV
|
|
></BODY
|
|
></HTML
|
|
> |