Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-08 Thread Giles Coochey
On 05/01/2013 15:25, Ryan Wagoner wrote: Or don't use CentOS at all and try OpenBSD PF. The syntax is much cleaner and easier to maintain than Netfilter/IPTables and it works pretty darn well. ;) If you want to stick with linux look at Vyatta. I have 5 production installs (3 physical and 3

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-06 Thread me
On Sat, 5 Jan 2013, Tim Evans wrote: On 01/05/2013 10:13 AM, m...@tdiehl.org wrote: On Fri, 4 Jan 2013, Steve Campbell wrote: On 1/4/2013 12:21 PM, Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-06 Thread Banyan He
fwbuilder+quagga is a great choice. Banyan He Blog: http://www.rootong.com Email: ban...@rootong.com On 1/5/2013 11:13 PM, m...@tdiehl.org wrote: On Fri, 4 Jan 2013, Steve Campbell wrote: On 1/4/2013 12:21 PM, Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-05 Thread me
On Fri, 4 Jan 2013, Steve Campbell wrote: On 1/4/2013 12:21 PM, Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-05 Thread Ryan Wagoner
On Fri, Jan 4, 2013 at 12:31 PM, James A. Peltier jpelt...@sfu.ca wrote: - Original Message - | | On 1/4/2013 12:21 PM, Tim Evans wrote: | On 01/04/2013 12:01 PM, Tim Evans wrote: | I'm replacing an ancient Solaris 'ipf' firewall/router with a | brand new | CentOS 6.3 system.

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-05 Thread Tim Evans
On 01/05/2013 10:13 AM, m...@tdiehl.org wrote: On Fri, 4 Jan 2013, Steve Campbell wrote: On 1/4/2013 12:21 PM, Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I

[CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Tim Evans
I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this doesn't seem to be quite working on the new system. Specifically, while it seems

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Mike McCarthy
Why not try reconfiguring using /usr/bin/system-config-firewall-tui instead of a manually created configuration. Mike On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Robert Moskowitz
On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this doesn't seem to be quite working on

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Tim Evans
On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this doesn't seem to be quite working on the

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Steve Campbell
On 1/4/2013 12:21 PM, Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread James A. Peltier
- Original Message - | | On 1/4/2013 12:21 PM, Tim Evans wrote: | On 01/04/2013 12:01 PM, Tim Evans wrote: | I'm replacing an ancient Solaris 'ipf' firewall/router with a | brand new | CentOS 6.3 system. In the olden days, I successfully used the | attached | iptables script (as

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread m . roth
Tim Evans wrote: On 01/04/2013 12:01 PM, Tim Evans wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this doesn't seem to be

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Dale Dellutri
On Fri, Jan 4, 2013 at 11:01 AM, Tim Evans tkev...@tkevans.com wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local) on Red Hat 5.x systems, but this doesn't seem

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Tim Evans
On 01/04/2013 03:03 PM, Dale Dellutri wrote: On Fri, Jan 4, 2013 at 11:01 AM, Tim Evans tkev...@tkevans.com wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days, I successfully used the attached iptables script (as /etc/rc.local)

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Dale Dellutri
On Fri, Jan 4, 2013 at 3:04 PM, Tim Evans tkev...@tkevans.com wrote: On 01/04/2013 03:03 PM, Dale Dellutri wrote: On Fri, Jan 4, 2013 at 11:01 AM, Tim Evans tkev...@tkevans.com wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a brand new CentOS 6.3 system. In the olden days,

Re: [CentOS] CentOS 6.3 as Firewall/Router

2013-01-04 Thread Tim Evans
On 01/04/2013 04:11 PM, Dale Dellutri wrote: On Fri, Jan 4, 2013 at 3:04 PM, Tim Evans tkev...@tkevans.com wrote: On 01/04/2013 03:03 PM, Dale Dellutri wrote: On Fri, Jan 4, 2013 at 11:01 AM, Tim Evans tkev...@tkevans.com wrote: I'm replacing an ancient Solaris 'ipf' firewall/router with a