Re: PROGRESS [Re: New to iptables]

2017-01-05 Thread tomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, Jan 05, 2017 at 01:25:10PM -0600, Richard Owlett wrote: > On 1/4/2017 10:54 AM, Richard Owlett wrote: > [snipping my original ;] > One doesn't understand things without understood background. > This thread triggered some understanding of things

PROGRESS [Re: New to iptables]

2017-01-05 Thread Richard Owlett
On 1/4/2017 10:54 AM, Richard Owlett wrote: [snipping my original ;] One doesn't understand things without understood background. This thread triggered some understanding of things I'd been told in past. I'm using http://www.netfilter.org/documentation/ as a reading guide. A shorewall or netfil

Re: New to iptables

2017-01-04 Thread Pascal Hambourg
Le 04/01/2017 à 21:30, Joe a écrit : iptables operates at the level of IP addresses and protocols (and ports, in the case of tcp and udp, other protocols don't use them). Where it appears to work with URLs, as you have discovered, it resolves the URL Not URLs. Hostnames.

Re: New to iptables

2017-01-04 Thread Joe
On Wed, 4 Jan 2017 10:54:53 -0600 Richard Owlett wrote: > I'm searching for an introduction to iptables that leads me to > answers to the questions *I* have. I've got a flock of links I'm > working thru. How are we going to know what resource answers the questions *you* have if we don't know w

Re: New to iptables

2017-01-04 Thread Bob Weber
While you computer should be protected by a fire wall (I use shorewall for that) maybe you should look at privoxy. privoxy is a Privacy Enhancing Proxy that the browser can be set to go through to access web sites. The privoxy setup for your sand-boxed install would be set to allow access only

Re: New to iptables

2017-01-04 Thread Pascal Hambourg
Le 04/01/2017 à 18:20, Dan Ritter a écrit : On Wed, Jan 04, 2017 at 10:54:53AM -0600, Richard Owlett wrote: One of the links led to _Securing Debian Manual_ and in particular "Appendix F - Security update protected by a firewall" {https://www.debian.org/doc/manuals/securing-debian-howto/ap-fw-s

Re: New to iptables

2017-01-04 Thread tomas
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Wed, Jan 04, 2017 at 10:54:53AM -0600, Richard Owlett wrote: > I'm searching for an introduction to iptables that leads me to > answers to the questions *I* have. I've got a flock of links I'm > working thru. Take your time... > In the meantime I

Re: New to iptables

2017-01-04 Thread Dan Ritter
On Wed, Jan 04, 2017 at 10:54:53AM -0600, Richard Owlett wrote: > I'm searching for an introduction to iptables that leads me to answers to > the questions *I* have. I've got a flock of links I'm working thru. > > > In the meantime I have a few questions. > > One of the links led to _Securing De

New to iptables

2017-01-04 Thread Richard Owlett
I'm searching for an introduction to iptables that leads me to answers to the questions *I* have. I've got a flock of links I'm working thru. In the meantime I have a few questions. One of the links led to _Securing Debian Manual_ and in particular "Appendix F - Security update protected by a