Change Player Size
Watch this video in a new window

Mastering IPTables, Part I

Linux Journal Presents: Linux comes with a powerful firewall built-in, although the interface can be a little intimidating. This is the first in a multi-part tutorial on how to master basic and not...  
 
Customize

More From: linuxjournalonline

Loading...

QuickList(0)

Upgrade to Flash Player 10 for improved playback performance. Upgrade Now or get more info.
51 ratings
Sign in to rate
14,326 views
Want to add to Favorites? Sign In or Sign Up now!
Want to add to Playlists? Sign In or Sign Up now!
Want to flag a video? Sign In or Sign Up now!

Statistics & Data

Loading...

Video Responses (0)

This video has no Responses. Be the first to Post a Video Response.
Sign in to post a Comment

Text Comments (13)   Options

Loading...
kirktolliver (2 weeks ago) Show Hide
 0
Marked as spam
This has to be one of the most comprehensible tutorial on iptables i've seen anywhere. Thank you for shining the light on this subject. Looking forward to wacth your future vids.
ratmandall (7 months ago) Show Hide
 0
Marked as spam
The blue letters are comments, they're not needed.
linuxservers (7 months ago) Show Hide
 0
Marked as spam
I understand that - Input Chain match packets wich destination is the Firewall itself and OUTSIDE Chain match packets that were originated inside of the Firewall, Forward chain is for packets that pass through it.
javier9185 (7 months ago) Show Hide
 0
Marked as spam
INPUT through firewall?????? What?? OUTPUT through FIREWALL??? Forward through other host??? NONONONONONONONON PLease d´ont help us!!!!!
thablackmarkit (6 months ago) Show Hide
 0
Marked as spam
lol i found a neat book,
amazon* c o m/Linux-Firewalls-Detection-Re sponse-iptables/dp/1593271417/ ref=sr_1_1?ie=UTF8&s=books&qid =1242065650&sr=1-1
sannitig (1 week ago) Show Hide
 0
Marked as spam
input = Dest. Firewall
output = Source Firewall
Forward = through firewall
thablackmarkit (8 months ago) Show Hide
 0
Marked as spam
fascinating.

/me bookmarks
patcito (1 year ago) Show Hide
+1
Marked as spam
why don't you just do IPTABLES=`which iptables` instead of using whereis? This way is more portable too.
pdwalker (1 year ago) Show Hide
 0
Marked as spam
That would be a potential security hole, especially if someone is able to manipulate the system path and place another "iptables" executable somewhere else on your system that gets run instead. You always explicitly declare your paths for maximum safety.
patcito (1 year ago) Show Hide
+2
Marked as spam
If someone would have access to my machine and be able to change the path of iptables which would mean that the intruder probably has root access to my machine, I think that would mean I'm already screwed and the intruder can do whatever he wants. An absolute path wouldn't help at all.

Would you like to comment?

Join YouTube for a free account, or sign in if you are already a member.