Download Print this page

Sharp Zaurus SL-C3000 Instruction Manual page 75

Zaurus pda instruction manual
Hide thumbs Also See for Zaurus SL-C3000:

Advertisement

my Zaurus SL-C3000 and SL-C3100
tty1
ttyUSB0
disable all non-essential listening ports
disable telnet (port 23) if running
shutdown ftp server if not used (port 21)
shutdown Samba server and portmap (port 111) when not in use
shutdown web server when not in use
tighten down access for sshd (port 22)
disable Qtopia sync with opie-security package (port 4242)
disable port 4992 and 4244 with inetd.conf
Firewall
Install iptables modules and configure them as a packet filtering firewall. You can also install
shorewall which is a framework that simplifies the management of iptable rules and configuration.
To enable IP filtering firewall, install the following:
iproute - [iproute_z2.2.4-now-ss991023-1_arm.ipk] or [iproute_20010824-1_arm.ipk]
iptables-base - [iptables-base_2.4.20_arm.ipk]
iptables-additional - [iptables-additional_2.4.20_arm.ipk] (optional)
shorewall - [shorewall-c3000_1.4.5-1_arm.ipk]
This version has been customised specifically for the C3000 and C3100, primarily as a firewall while
connected to a wireless network. Once installed, you can specify your network interface to be
firewalled by modifying /etc/shorewall/interfaces. The default is to protect the wireless cf (wlan0)
network using dhcp.
Once you have established a network connection, you can enable the firewall by issuing the
following command:
# su
# shorewall start
Once you disconnect, you can stop the firewall by issuing the following command:
# su
# shorewall stop
To check the status of the firewall issue the following command:
# shorewall status
The iptables-additional package contains extra libraries that will allow you to use all of shorewall's
features.
VPN
Setting up a VPN connection with the Z is possible. You will need to install the following packages:
iproute - [iproute_z2.2.4-now-ss991023-1_arm.ipk] or [iproute_20010824-1_arm.ipk]
ipsec - [ipsec-module_2.4.20-1_arm.ipk]
tun - [tun-module_2.4.20-1_arm.ipk]
vpnc - [vpnc_0.3.2-1_arm.ipk]
Once installed, you can establish a VPN connection by issuing the following command from a
75 of 212
http://www.users.on.net/~hluc/myzaurus/
16/09/2007 12:23

Advertisement

loading

This manual is also suitable for:

Zaurus sl-c3100