38
•
IRC DCC file transfers
•
Secure Shell (SSH)
•
Remote X Window System clients
If you are connecting your system to the Internet, but do not plan to run a server, this is the safest
choice. If additional services are needed, you can choose
through the firewall.
Medium
If you choose
resources on your system. By default, access to the following resources are not allowed:
•
Ports lower than 1023 — the standard reserved ports, used by most system services, such as
FTP, SSH, telnet, and HTTP
•
The NFS server port (2049)
•
The local X Window System display for remote X clients
The X Font server port (by default, xfs does not listen on the network, it is disabled in the
•
font server)
If you want to allow resources such as the Secure Shell (SSH), while still blocking access to
normal system services, choose
through the firewall.
No Firewall
No firewall provides complete access to your system and does no security checking. Security
checking is the disabling of access to certain services. It is recommended that this only be
selected if you are running on a trusted network (not the Internet), or if you plan to do more
detailed firewall configuration later.
Choose
Customize
Trusted Devices
Selecting any of the
device; it is excluded from the firewall rules. For example, if you are running a local network,
but are connected to the Internet via a PPP dialup, you can check
from your local network will be allowed. Selecting
Ethernet is allowed, put the ppp0 interface is still firewalled. If you want to restrict traffic on an
interface, leave it unchecked.
It is not recommended that you make any device that is connected to public networks, such as
the Internet, a
Medium
, your firewall will not allow remote machines to have access to certain
Medium
to add trusted devices or to allow additional incoming services.
Trusted Devices
.
Trusted Device
Chapter 3:Installing Red Hat Linux
Customize
and then select
Customize
allows access to your system for all traffic from that
as trusted means all traffic over the
eth0
to allow specific services
to allow specific services
eth0
and any traffic coming
Need help?
Do you have a question about the LINUX 7.1 - ISERIES and is the answer not in the manual?