Penguin
Note: You are viewing an old revision of this page. View the current version.

Firewall Tutorial

In our last meeting, some of us discussed doing something on iptables and firewalls.

GlenOgilvie is running a tutorial on iptables and associated tools, rather than a presentation, so people can get their hands dirty and learn it better.

Numbers are limited to 10, and you should either bring you own laptop, or pair up with someone else who has.

There will be a bunch of virtual machines setup, so as long as you bring a working laptop you can play with firewalls. If you want, you can play with the firewall on your laptop as well.

Each virtual machine would have iptables, shorewall, ulogd, telnet, tshark, nmap, ping, and a couple of text based editors like vi, vim, joe and pico. Laptops should have these tools installed too, as well as wireshark if possible.

The tutorial would include nat, snat, dnat (for connection sharing), chains and rules to block and allow stuff, plus how to log packet information so you can see what is going on. It will include various tasks to test firewall configurations, with some information on how to make your firewall do these things.

Prerequisites:

  • some command line experience, including using ssh
  • basic understanding of networks, ip addresses, and ports
  • can use a text based editor
  • a laptop, or pair up with someone who does.

RSVP

Date: 12 April 2010
Time: 7pm
Location: OSS, 162 Grafton Raod, Auckland
Parking: There is plenty of street parking on Grafton road, and we also have a few visitor car parks.

If you like the sound of this and can commit to turning up, please put your name in the list below. If your plans change and you can't make it, please remove your name and email the mailing list.

NOTE: This tutorial is going ahead, as we have 10 people RSVPed. I have emailed the mailing list.

The following people have RSVPed.

  • BrijeshPatel?
  • NevynHira?
  • ShaneGeddes?
  • AnatolyKern
  • Tobias Gerschner
  • ByronPaul
  • BoydSal?
  • PeterArn?
  • PaulSaunders?
  • AndrewHill?
  • LekshmenKannan

This tutorial is now full. If you are still interested, put your name in the list below and I'll contact you if someone can't make it, or if we get enough interests, will run a second tutorial.

  • Daniel Lewis - djlewis78 at gmail.com
  • Seth Fischer