July 9th, 2012, 02:48 AM
I was going to use one of my old computers to run a Tor relay and it only works if I allow both incoming and outgoing connections. The only thing on the computer is tor so I'm not sure if I should even worry about it. So say if someone did get into an open port, what exactly can they do? :confused:

July 9th, 2012, 05:14 AM
I would certainly recommend installing a firewall
even if you only would run tor
in the near future IPv6 will become the primairy internet protocol
as such NAT will disappear
meaning all systems are likely to be peer to peer addressable
if you have any services running that now arent available through NAT due to a router, that will become directly accessable then.

netstat -tulpn | grep tcp
netstat -tulpn | grep udp

will show you a list of services running on your system
which may help you blocking traffic to those services
that should not be available from the outside

July 9th, 2012, 05:45 AM
The firewall is already installed. Turn it on via CLI by opening a terminal and typing sudo ufw enable or by installing GUFW via the Ubuntu Software Center, then opening it and using the application to enable the firewall and set any custom rules you may have. Typically, if your system is running on a LAN with a router, then a host based firewall is not needed.

July 9th, 2012, 11:41 AM
Have you read the 'Do I need a Firewall' thread?


July 9th, 2012, 12:38 PM
Inspection firewall.