PDA

View Full Version : Fedora Firewall in Ubuntu?



Lord Xeb
July 2nd, 2008, 10:36 PM
Anyway to do this?

LaRoza
July 2nd, 2008, 10:38 PM
Any way to do what?

Use Fedora's firewall? I don't know. What does Fedora use?

JetskiDude911
July 2nd, 2008, 10:41 PM
Doesn't Fedora use SELinux?

Lord Xeb
July 2nd, 2008, 10:57 PM
I believe so... SElinux in Ubuntu? >_> As if that is going to happen. I got to make a whole new kernal... I think.

Kingsley
July 2nd, 2008, 11:02 PM
Fedora has SELinux and something else that's a separate firewall AFAIK. It's called system-config-firewall.py 1.2.9.

Edit: I did a little bit of googling and found out system-config-firewall is just a frontend to iptables.

Lord Xeb
July 2nd, 2008, 11:04 PM
Can I put that into Ubuntu?

ibutho
July 2nd, 2008, 11:14 PM
Can I put that into Ubuntu?
You could do, but you may have to port it to Ubuntu on your own if someone else hasn't already done so. Alternatively you could use ufw, shorewall, guarddog or any of the other iptables frontends available for Linux.

Lord Xeb
July 3rd, 2008, 12:12 AM
You could do, but you may have to port it to Ubuntu on your own if someone else hasn't already done so. Alternatively you could use ufw, shorewall, guarddog or any of the other iptables frontends available for Linux.

Yes I could but I like the layout and simplicity of Fedora's firewall. I have already tried to port it in but I haven't been able to yet.

nick09
July 3rd, 2008, 02:05 AM
You could try firestarter from the repos.

macogw
July 3rd, 2008, 04:47 AM
Gah, the misinformation is astounding!

SELinux is *not* a firewall. It's an attempt at improving on the owner, group, world permissions model. It has nothing to do with networking.

Iptables is the firewall in every single Linux distro there is.

Firestarter is *not* a firewall. It's just a GUI to configure iptables. Ubuntu also includes ufw (uncomplicated firewall) which is a wrapper for iptables with simpler syntax, similar to OpenBSD's ipfw syntax.

stmiller
July 3rd, 2008, 04:47 AM
Yes Redhat/Fedora's firewall interface is nice. Even the terminal version is clear and easy to use.

I'm actually surprised that Ubuntu has been here for so long and not written their own firewall GUI of some kind, or just adopted redhat's.

It seems to be a critical system component these days.

macogw
July 3rd, 2008, 05:17 AM
Yes Redhat/Fedora's firewall interface is nice. Even the terminal version is clear and easy to use.

I'm actually surprised that Ubuntu has been here for so long and not written their own firewall GUI of some kind, or just adopted redhat's.

It seems to be a critical system component these days.

Why write a new one when Firestarter exists for simple stuff or Guarddog if you want to get really advanced? Ubuntu's already gone and created a simplified command line interface for iptables.

pferpaddy
July 3rd, 2008, 05:22 AM
yeah SElinux is nothing to do with firewalls and ubuntu comes with its own firewall so just download firestarter to configure it
good luck

kevdog
July 3rd, 2008, 05:41 AM
macogw

Wow -- such an outburst -- I've never seen that before. Just edit the d**n IPtables by hand. Its not that hard, and its way more powerful. Firestarter gives you a limited set of commands. Guarddog is definitely an improvement over Firestarter, however its KDE based -- too bad!! ufw -- if you going to go through all the trouble to learn its syntax, you might as well learn iptables syntax instead. Here is a great tutorial:

http://iptables-tutorial.frozentux.net/iptables-tutorial.html

Iandefor
July 3rd, 2008, 06:58 AM
Anyway to do this?There's nothing especially "Fedora"-ey about the firewall in Fedora. It's just iptables.

If you want a simple frontend, I recommend using Ubuntu's ufw.

If you meant the GUI configuration tool called system-config-firewall, you can grab the SRPM's off the Fedora build system: http://koji.fedoraproject.org/koji/packageinfo?packageID=4912.

ibutho
July 3rd, 2008, 07:57 AM
Why write a new one when Firestarter exists for simple stuff or Guarddog if you want to get really advanced? Ubuntu's already gone and created a simplified command line interface for iptables.

It would be nice if they included a GUI frontend by default (not necessarily Fedora, which I agree is very good) and an option to enable the firewall right from the start (during install time or first boot).

macogw
July 4th, 2008, 05:49 PM
It would be nice if they included a GUI frontend by default (not necessarily Fedora, which I agree is very good) and an option to enable the firewall right from the start (during install time or first boot).
Since nothing listens on any ports by default, it's effectively the same as having drop all.

Lord Xeb
July 4th, 2008, 08:53 PM
Problem is that I do not understand the command line interface e_e Also, the GUI interface with Fedora's firewall is awesome and I would like it in Ubuntu.

macogw
July 5th, 2008, 02:25 AM
Problem is that I do not understand the command line interface e_e Also, the GUI interface with Fedora's firewall is awesome and I would like it in Ubuntu.

Have you at least *tried* Firestarter? It's very easy to use.

Most people don't understand iptables, I don't think. I've edited the /etc/sysconfig/iptables/iptables.conf (I think?) in Red Hat, but it's a pain. That's why we have ufw for a simple command line way to do it.

PmDematagoda
July 5th, 2008, 05:08 AM
I believe so... SElinux in Ubuntu? >_> As if that is going to happen. I got to make a whole new kernal... I think.

It can be done very easily since the Linux kernel has SELinux built-in to it, so the Ubuntu kernel has the capability to use SELinux(I believe SELinux is enabled) so that you only need to install the SELinux packages, so yes, it has already happened a long time back. The only problem comes when trying to configure SELinux although it should be easy to use after you get used to it.

Lord Xeb
July 5th, 2008, 05:25 AM
I got it installed using alien, now how do I configure it? (I installed it using the command "dpkg -i file_created_by_alien)

Iandefor
July 5th, 2008, 05:49 AM
Try
/usr/bin/system-config-firewall

Lord Xeb
July 5th, 2008, 10:46 PM
nathan@Omnious:~$ /usr/bin/system-config-firewall
bash: /usr/bin/system-config-firewall: No such file or directory

fjf
July 6th, 2008, 11:40 AM
Firestarter is nice, but it doesnt work in hardy. It says: "device eth0 not ready" in my machine.

Lord Xeb
July 6th, 2008, 05:45 PM
I use gutsy. Hardy makes my machine run slower and hotter e_e. I got the fedora thingy installed, now I need to know how to configure it