36.128.0/17
X-Spam-Status: No, score=0.0 required=5.0 tests=none shortcircuit=no
autolearn=disabled version=3.3.1
X-Spam-Report:
X-SA-Exim-Version: 4.2.1 (built Mon, 22 Mar 2010 06:51:10 +0000)
X-SA-Exim-Scanned: Yes (on mail.bitfolk.com)
Subject: Re: [bitfolk] iptables front-end?
X-BeenThere: users@???
X-Mailman-Version: 2.1.13
Precedence: list
List-Id: Users of BitFolk hosting <users.lists.bitfolk.com>
List-Unsubscribe: <https://lists.bitfolk.com/mailman/options/users>,
<mailto:users-request@lists.bitfolk.com?subject=unsubscribe>
List-Archive: <http://lists.bitfolk.com/lurker/list/users.html>
List-Post: <mailto:users@lists.bitfolk.com>
List-Help: <mailto:users-request@lists.bitfolk.com?subject=help>
List-Subscribe: <https://lists.bitfolk.com/mailman/listinfo/users>,
<mailto:users-request@lists.bitfolk.com?subject=subscribe>
X-List-Received-Date: Tue, 16 Oct 2012 17:31:13 -0000
--fUYQa+Pmc3FrFX/N
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On Tue, Oct 16, 2012 at 02:08:29PM +0100, Simon Bell wrote:
> On 16/10/12 14:07, Barry Watson wrote:
> >Hey there list,
> >
> >I'd be grateful if someone could recommend please a front-end for
> >iptables? Arno's iptables seems well-regarded.
> >
> >I've set up some basic iptables rules on my VPS that allow/block
> >various ports etc but want to be able to use iptable's state
> >module too and would like to use a script that's been proved
> >through use.
> >
> >Thanks in advance for any help/ideas.
> >
> >Barry
> >
> UFW
>=20
> https://help.ubuntu.com/community/UFW
I'm also using UFW, but my needs are extremely simple:
* block all ports except for 53 UDP.
* block all traffic to port 22 except for $IPs
UFW makes this *really* simple.
-Jeremy
--fUYQa+Pmc3FrFX/N
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.18 (Darwin)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=8ID9
-----END PGP SIGNATURE-----
--fUYQa+Pmc3FrFX/N--
From andylockran@??? Tue Oct 16 17:40:06 2012
Received: from mail-wi0-f170.google.com ([209.85.212.170])
by mail.bitfolk.com with esmtps (TLS1.0:RSA_ARCFOUR_SHA1:16)
(Exim 4.72) (envelope-from <andylockran@???>)
id 1TOB7e-0007rE-Cs
for users@???; Tue, 16 Oct 2012 17:40:06 +0000
Received: by mail-wi0-f170.google.com with SMTP id hm2so162900wib.3
for <users@???>; Tue, 16 Oct 2012 10:39:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113;
h=content-type:mime-version:subject:from:in-reply-to:date
:content-transfer-encoding:message-id:references:to:x-mailer;
bh=wco4Zpl52msSlhz6bDIzCEt4GXBUAvAH/mOx0C/Mq84=;
b=MefkXejBFhc52gBeHo/OW7f1dBXWT5yfar4EdCbrnnLkbRET4ckW2l1Fplhw+46g9n
FlvUJSll46kf9Ois4HkYoXubkoKPYkwHzpZRrrPXGYwSNozT8DKhmCtphW0uMzlMvyiU
XiqOO2s2fVWTkPtx1GBA+sHylCX8bGVX+lbc5T/heP64S3AvZ7QoaJGXtggvck2ph3Oi
Q0Nx6Clv3KMy+bmSOZ3IfYY6BSViQL4zBU7LE/lPTOOzFRlI7dXsgIdEvPIxE7W9YFXz
PWLgV1ouBnCXlCaQnpGR6MIGSv28mvvYmFhIHPVGq3n6EAJ0l3cfLM/p9lvkucvJMcz0
yxBQ==
Received: by 10.216.70.13 with SMTP id o13mr10343099wed.184.1350409