From 7e53da0eb0ccbbbcd7f5e330ed200814c2ad30c2 Mon Sep 17 00:00:00 2001 From: test2 Date: Tue, 10 Dec 2019 17:15:03 +0200 Subject: [PATCH] shorewall --- sec/basics.png | Bin 0 -> 18750 bytes sec/ex-4_iptables.adoc | 89 +++++++++++++++++++++++++++++++++++++++++ 2 files changed, 89 insertions(+) create mode 100644 sec/basics.png create mode 100644 sec/ex-4_iptables.adoc diff --git a/sec/basics.png b/sec/basics.png new file mode 100644 index 0000000000000000000000000000000000000000..620ec314511206d673fded15671fc12d7b25113a GIT binary patch literal 18750 zcmeHv_di@;w?ATtQKLqQ648k^S_p$6!ss8daB}x!R8zj0Qdha3_Ms%Vj zF?#R)d*t)I_dfUe6YlHr3uo_r)?T};_o~M`Ee#b?FasC|2ZvPk@gp4^9Nb1696bM< zct8u?cm+N13)e$OMFHo_0MiQafNw7klgGg+k0Cy{1Od;i){k{yI5>WsI5rG0&Y_81E zHmsu%0kuA&k==F^pa@pfgYs`BJxYSU@4esr-wb{!q zL9D`FAi&d)zn>s!m>?igs!+3Yr7PfuY{vaR=cMfpO6I z2zr=xdc~B51=Fv4X_@E%WH%1^ggJgg=xE?Nw2=Xt}=13_2RK}&|&d0&vBLOPh zu_zpjIz`bu8mtREMgwgA>$Hyh-EXIXb`T8?5=sRyuZw#%C<}_y>#&nQvH`>G!qg`1 zS{cBV+0bJ_%sETsv&odpOgG1g;yf-)8a{gInRn@0#$onC;P{FyI!A(c`1QkPnFl^S zUcEjet$E;Zj?8CfJ7bG#Zu`QJ?8x57a;}xb=k(7DwltfLJ6 zLr=xyp;a-jUQAYR9sGj&zsj41H_ZCeH@07B3)9CS>)bl6`qX5PXHilXi&euL%h^+| zrJ>37T|GpkN4Ob4CYSM=3_<(U zE1x3er#MIk{zzB0_liMbh`UEGd%|b^-2B@Y#4)DDP8+`!JeKY5ZFm4n;TR=A5@GbZ z>2zMu!>5*~^K@OZS@CPaBfT6e+Nwlg(tLOMF{WR=s{%_-Uanog5$Z{RbihDJPFNrI zLP%AIidw#i1eiJpZ&JjGZ*B^z^0-#g{z)Q5P8En{yT>xi>lVQ07D5$c`&@JpIxmUq zj61NqtGH+g{3+!U>zd;5VMwX$Jg34i_I`k;ER%O8I6)SoFT(Um1yhN5eXO&vm=nwA z3PXH->EDH3|2{;;b@=U)n41W~CEQNX)m*$@Tr81CFL3F@eOr}~u2#w3rJD9nO0GSs z`hDm2D}=`ADTgCP1w_Dn(j+4lDoTiyeO!uvuHJaKq_?qfRGX4-+fzjnPb7bKa;!Ay|;I;&PG}m-@v!EvgewMkD}8<1&)dg&iNFfRPgLp1T{RM zii^C>wvGrwK4R&W_E5Wu2h8*#xr^m7-nGb*Wwpk=Gfql{?or&ad%~cQa)%E`nD_%;Zca19UzZ59-!*>$SQuXzbl04T?3L(I3Bl{q(l##GL6b2VO-` zUSUweJ4~8U@l9-qnm#^!Q(Rpl(RRMSjV750_IsqlelWq%ahNf9emGB)6v@_8IUKPP zU7@p;$R!(iK5;b7Q=KPAE(HJ6794pM^|>W$F-0;%RDo+4e~!D%1Z1bMcY3hqz4>#< zd`J6r6_Ho==*D!-M$RE)k8@0%9^I%hfmpzPyC1t%VKSXK`}-Dob^`b$L|4>!CGQ4$ zhTx)&ilb0Y7jc529(mQKvK7EA%9O!JIKnpgKtLGM$l$WkB+dwzK8wmqa(jQ9M^+|N zszf!H$X(l_2HYQ>yA+kAamt{56McD}Yacqq){!ZyCk}!|4-+ow%-qEMbO{FsklDlzdWDXUKekR^2|kvyVKZHr8>4TWfX znx^Do_>xtc;3fRMi0SMQ1YS!)z5CL}N7m|*Y7vQJQ~o@=3e+Q0e$Lb^xWh!3H8?dp zOEB&zYb8A4@znn3=qi_uX^8;HK-ie`fsCnr4W6uvU+>#28PkR%hcPL)ubB_-4&&Ee zZ@vghicql^e~BwtDJrc*NnF^|93R=RA!O3$w{7nWq7B0u>$&6s+U6CYMs5H)OE;MS z`SLcP@lYwTJ$Qem;93{$1;z)SoUng+i)W%6v>?^t@s$WrW)RT4U1q9BH?}w z_vX1gqT*Tw5@7-5Nl6W8B~dohf!PqAAUqW<9M`a)X;R|$K4fpSEv~MI)m?GRDV!?a z`KX8E${?|nmtuq5rUSjt#`(#wppNoQAgi#^>8KJfYK^Nij!6D1QRUQFzyBR-Y*w7vz)ce_c;|b4iH*|(xlaqM?jyJ|!x;~zKo8Qg z&;}vHuvVS-hD{;d)9Ksod%#)W2athZ5trIX9-*97cTe~`#PDrj@E?A?3T@ESKb#nR z8(>eJcrmmRbexucg(@0VA8 ztKqXF_l>%i!aq-kBr!iN!;OVAYWJ0?eU7R&y`dHF@%|pyEcNku)n+&OkwHQ9&uE`N zZ(9`*O+4GM@n>h_pHgU26V)rSYp3fZetmyVeY|Zy6D{#>H3GPX5xT>cN&(adv|%yR{b2PiU{(WTxS@2C`1eoB&Bo1RGRAJORJjAKvV^`gyU+5Z4%s zcl`pN=k0!GQ^dDt-h0a4zX$6D*93!@OdU&Quert){v|ZnpeeU8Yd`d=&7T0{T-D(| zt%7K9d+B|}<$(S1>^A&l`QFM_bhw|k(UcL2ww#1PJkke%_A^D`N%gV);; zxD)d!rRcyERfpX7s3%=wHo)~4+Up|z(Ld^UA7ctT?eOyF%_s?an0zv7_$kH7%LG-I zdpemOPL*l^UGLkw8Xj-Zyi9_K>Nd%s&+Kv0iHs;cMXNkE(Cn3J-s{^bt7WIF(r%t} z0V>E8{%3_FzZVhMUQ(@Usq*RoP&4(}Wx&y4>NCgYg3Le17h9^L<6C7=j|=gMK)G)n zZ@|m`zx-)wXWoDNy&?rPeRq)h@A;?UJrO;Kd}KBE(VX+#ZoB4* z#?_x+ZR)h>Jt4zGepH=lIM4J8BPVTKHPJ5FroaQ&ysKL2&$KK~WcydKb{an%BQiw$ zaL^@{o&8~d_BZ(E9dhM8enHR3pB-&V3rh8E*|}yVA^=+*5lW3|i5SWM`PQMdf?~vK zsNwbQZt=U=89al-jT;!#{El_$sQejYP~f=d*3}}76&RWMdN$xZr~KwVp=ch(VKF&1 zclKX1zAOaq0;0<_qWID6s&Sayoy5z|Q^Q}#iJ?l+*~8YoI{Y;{^kp>XK8E$}Vq`+r`_tMkK!=fE#QHnK->TH#S1V zL56EjQmEY#eIZ4UfpbQe^$$c2}$PGdUoB7ntY9!Vd)|@R9&lCxSn^|xY|e+WnA9DKNevMuek0fMV`_*oT@k&L~c|6 z=qIh_zdjHxHN-myyJJ)Xr-WFSga2buiO1?#h|@umi@3O%Kru8~)G_h=_Z6+&Pv$`B z$L7a%C*57vsfQMv6)D6LWBYw^4(%}N{A_4~UEsNSeT|v_fzutf`{s*@Ew4@@ulcxD z{R-gYa|i!itm$(naEJqzw8gHP!pmvCE$A)*Q zIfdxcKT@F@Kl;(XelXoYE=u=zr!pPUYO$(|$~8>~>|O*XQGE;pBp#l#uJ+e!3#GaF z{rF&fMtc0qxiqR~Zn^RUL^Rd7DDx(S*gJXDgqqO65P17cZjf145AqfuJ!<0q^REYo z`h;hRJlW1{Ab(BEIKBm5qkFK$|EyI~Nrl^er9W{HHmr4<(j z<)s{2V0)@${c_HJMM_TEh*vnSC5Vt++b0Ryt;7A>ZT-4;4*F(;H$SC(Mj1?#VfcqF z9c!o#Yf6E4fzxGo4ZpgP?uK-037Ap*J8cl&C9C!o@SfyNE~u&~!Vbah{P>aS!&^=UO`X)b37nQUb#f6v=G0e$v_9|XO0a%2hx~Y^AHOTt$)xli#<{p{H54yt z4_KtA^;?&vz!%|Hcq2Lz_(*{&1G7?WaUs|TIeC>AuluEF*!-$(TXb7jBd>q=AHVtJ zZ)Z$Am2?IFvRna-U%gxaFwox_Qui1FD`R|pxJxHmgDKj{D#U||wsh#Z+>UZH$JG=y zKAR1+rrD>s)@405e z3&mWLcI%J+5kk?AJJCgY|9Jb44FCcG);cZQxpTfnQ%b_kVu1U8D+cd7*a(?&WPu%{ z2$CxRl++)x54^&Q-nl`aQ(CS9@-oGyj7ReasDZ)HWAGe+!QX>ZbdSIGi9kh5I@U#Q z=8wDt9akT}EIE8idClo#EvN%Fd~46b?v2%%A{R#H<=&Pcs%Wg|N5A(~8lfopj8hOc zE478!>d@ZQ0V{n~em1)NT7BBQq(J-AUuY3h#r>S(c2V1K*r5?X@Se#S7o|!F1(Z2A zdgO3r?E{!4g{PrZ8uN)9)#?l4M>p<>1}6V*G=T1PP5up%yus}&1TUw)ijh9`=(;S% z*JW&>ZS-f=C}2&o>&g)SjJw-yVFE&b=Ge$TkUlnZ|xrMk4|G9ldHI2 zzcV59yfE&cNgtpU(HWS$PnY`ZGYxd+*x@ayT@z`2{~5QySHj{~N&b{zQy_pL0Y*Q6 z((E%7D%kwPkQ_+|NVF%p`7}Ijq)0MJlLrS<^MgK~o1SuSLC%}y(wVPn!dz1qc~T@1 zM+Y(kx(y@4oS%es_8*&1pZ$K?#843Z<>D5(-Ip6gr2T*i|ocGyHSAVZMU`5d7F+~Yr z-u2=yP&G{DfX89oPzuP*jKe8QC^$Zb#oI67@}x`W_}f)ggYWNOi>YJ>#w-4^C)0^7 zsJn7kp)N=~x~x7YI^c37m#bpZ6jUEl+SpLj9-MBM3YHxYwD=Qsr;a~plD!=2QvAq3 zBHR3`z&l{_*?IrQP2rmDOlt%dVqunmhis^`#{q%?8QFjGGQG%I%o?Mjl7yy2m;8=@ z_HgsB9&A%anx{7`HeU@#<_W5x>Ox;@-GCslu3C~!ccFVE5cVghttT5-n5MnF(y$+= z-oov_!rhwh<#0p+!nf`HEbl7!p@RAaOQ-jjlB*_F00r_Y>?AmjaA28hBy%={&d6Jz zL+IwTUTyT=4dIAtIr;6w{Y-`-WL~g^DL6Nlw~V%B(>VB$!@H@usqq1z3GA)yUV{#C zU^~L5tPG}tU-5341=wH3l70r|@+hu+wR|p)rq(RFWa$(XbSiPcr)qPhLE4nT1_fr% zFa0+G>`o%Rf7V6WJ$S!7 z-lyCbXskNmK<(_=zI7OuxWZB>bHVRwb@}TTMPGGNOw#ln~_9nY&by zQ25S$48-pE`*QwrH#z(9-92@QcIgk1^2CI$z1rag3DVcR@&2JdF$hYjPjHcxix<0uAJ*;AI9r zS222Zbe2_ln^z=ozpXE1i1{WB75jQp_PrGB{)h;#ukibYDq_&nH`tkqv~)ZBGqJuP=RmMTbhLx z`gaujv;h1;zuRg2ZM7jUS|Ggd9+i6@uVMUoI|1U6a?4xiV2R>S&=RME+5-AoVi6-T zfl~oHF{!tob1AJJuhzYvy$G~UPnSY}!c4ueMAgYcT4Z*nnTn!nKfLi2GC4m3VYQ~z zbw5;o-nIjxFhD%(b*lAQLK@%&Lp0d}DyUn_0Sw0WV)T$Fr%vBB6S=CMH?@=0=gA>D zw;Rov?mN@NzmUL6bZ45*;~Sn@EmUW|t`k@JUgZ1G+@0SUh|x|m7gke9Y<4)}J8rb6 zI*O&GK?cEt2=F<*~OjqnFY4&zPZ zo~LV7ff&!4`pr`yw8{($-!!KsGxz>-Y0s5tn6iR5yGgHJ<-YoKutB4AB}41QM?gEC z0;Wxd>7{Gx<30kCw%J9~JYUi-fGc+(2%r{yO-*7^hw4%OEz&@|{7VYNd2Gyu;;pg2v9r#h1La z`g4@(bMyk-CxMDauj5As#b$lU;K>!|JJgWqu%z?VCXRN?!nJ1Oa`=PnA+OGjzp;A$ z($@L?%pc0-KZ0mPhF(B7NX*%o9=Z!OM2(G|S>BN!{zAi9m&6vv&VLe_WqnW7_=99`Pe=#oOWa}M(qbQjN1A1Arl z9`aFxo?Zv_(7WIeOw@}S**XoH+bbGR7+nG@8l26dUuT$xzytVpeMiG5<) z%wckUWBi@Znc{?wYYJgL(l+0V6?HwndL^NGCycRCC8m?(X+03{K^V%InZAJ>SwX{e z&hS~g+nrv6Cqh0rXT7ax`H}h3J1j>>+i`*Cz4SHr{Zh|D_haV|6ZRjqaBm5jKB8pu zrvgM>0Gs1qr*&Kld|Lyw zi(QAefTYVmfi5De(OM@<;1MP8Z_~QWknhj}?P33h6Aa!0&H&z2e*PbPf)c?m(Q}P^ zIV>}cUM|6(Gs&0DC^n~JZ?-r-d6JocDm)<_Q zX^a+GFoB*LUXKg3^56aQ{V^Z7K;gSj${TrB7Q%)6^an2w6((n8eYR0+^+&V*TZbFd z_N745OY$q;w>NgmUpY-9I7^_S(l#Uy$k_?lLU#{?_$nJYM@fkD88x6ANg5hoEauXzPZK4ks(@gUOO>9@yv)=bK_i zG%}0Jh!FCF`muZnbaQT^Zzb&!(YsZ1 zmk%WOwXIF0c_}Bg#(R@*4SLv)MNhD0s;1$=`oIChD@bVUbb#Apm^4blKs|L-fdx(K zZ6Y43O|w09!brYcremNhO|73)H)KE&lvw~~B1X19dM(z&LB&eK*Ui49CMgqRcX3Wl zBaS1bNGc)wMItvD_N?pVb4<6BG~^cY#rNf0nA`qPe1p4>>++Em!IK*`G!-jqY62Y# zb?8jL-jn4acEeWg^~BwjF?b6{<12Q)DhZutBG7vfOtV1-M!aB4glZcgOlAvP59q^uXy-U1f!Fg?U|ETqHcIcDgr3s8!$LZCJa3}&b-L%4#jQPU zUCU2S(y+1eN~*o3cKq#~F3N{)Y$;#yT)B9LNnpl-j@#g@ zf;0I!6Y266GirI=x8p0D8ROdi1Y!x3%TLAg;%>#Iy}@HN#DSYRpf0J+dg%IS6CE7w zYe{!q@sZ*wa3}s=s*VKrU)!(15V6xF^0=aaYUJL~_Rm~nmuPN1C;=fC-(t*tx@VD# zsA%uNpMAPG@a7-r+&eC@n=yQ0Js7s3M;-cdDqEmij82;U5cK2PU0DyGK;B_J5k?JI zVe)%x>4SS;{c{~w@(kzf39>JES#cG!cC$ZJXjuebFF0FSZcpUTWPkd> z-gc9)2F};U@9~dP#~_WT#mkT248NIr#ralKe)p@3?i!4BN}8m8C59n#7kfA(OM4hC zNm0$U06uOVJ(=VuB$j7f->!w2Bdp~`(<1key5qQ;z7`L=TU&dD=g1XMZLZrRhbVm| z^Bg)}P3!fmTm-Pswk}XKx3sfMXNZT*I@(LRtg<_KaP~rS2;=)7rn_#Q)Mf2GShe1E zZ|PMbFCU1}<43hBQ%h1n`goZsxdy-TKOzrbnw0WS`VzlT0+$rw@m*a$HnxBE83*ia zj*F_h5N}rmqS~Z9WfE{lUbOh-OjlSoiJ_K-3fLKhY&X57FSudaX!Mpln@br0wY#8R zlw)&o67xU}J29I?zb(P}@H5oq2rZMbq- zPTSlUdl`?O!RMoqM+k72kwG*CupyrqRmC+Q>fu9b zD0Gg4@Xib@K=4Dtak7Tz@C=wZJMCU8w%PjQR8}i5*qH%o`ISD)i{hr1Z44-vouM+{JRA%xmulHx~#+i9V>Y`Y`evQOmb zGsfRDujjPl(&XPnx7n_pU?A;bf_b7C84G+}TWTXCL_J1kC%OJ}1f7Xol}uOXPW;7C zKys{zjJafCEfaX%2$7g26`GotD}DCe?&jF+*&T_y`q$Y54a5c1;~oviu<3nNEhTvU z8DbT~*+jASG2cvRYw9pLrUoAit?95i-l|-%l#$)G)Tg$^gM8yNwUclMZ{7%?s-OVM3CVN! zaOcU*B-b#em6MKO2`}|$tRsbp=7bGv&9{PW6ht3yYD7rfLgvMP+cq~)XKepA=vKc- zf&A?OB7Bcu_#V(Bs)$$cFfGQ$k$4OfS1I{kj%t4!QHbhS?VBL2`F!vns3-$}CPSgh z%0j|HS|iu=AmtuEgs`RY?92kC|n!sJR>-u!vP3e$Bk6*j@ zCK}0K7iT;N4cH)qlOu)vPE%!W$i4DCeAid_9s73YGHt!UU%57O`&xe?@jiqty?=M| zXj&GMm)C*dS0QFxjl}z=Z$Sxpmazg&i5U+SP;U`#?fvaV=lCA)qs5b1@l=5^tn+cL z&R54YV2NeKpckkWCrlMv)t$5X7j#1!99pO#Koy@`@5!_qvtoo0c>da~RLF0t;%rzm zg>*j@lpb)HjB<&D`ySC7TnjA@datEjYWC;R=8XUO@lHal51_0QtoHhPSbW9cdDS(V znX*kDO9Le)HJpwjEnkhGh)^1C95fF(LPDGKsW&p&&a5Tyf;y|cT8}=d)wW z6{ny7+2ICH;;Q+trlZ+mj(s}#{oyfFTVK#_mcuY|YUJV6Oe1)5t}yK_+w(`$BBU}b zNGiV3()SwpANwjr42{(g>hMjXkILs1NGcC?r;1oX%?z2L4Ew?5mSlR z4CIjEwYoVzjONpU(p`r?TVBh7si#>;>$w#65^APOpExAk@mnMF`CM$4Rpa$5n2`MZ z5lzw{*4HPyz$W}|PsUV>0r^5bHw8~D3HoB;D=Q>gOk8%#G?$^BC&u80gXmA#*u zQDg;g?1ZLTCPD~Ip@_mDEKc_yb1) z^az`Mgz(5Nj6KI(O-4txLh24M3n|~{qCUQs*jqod=>41=eVP>54a9Vzb)Uu+SOn1H zbMO{@aW_X#KSI=jPz=sIJQlD&!R+fSK>Q2Bh2fI_e+N zaj-Xsq{PjVztPE?I3AZ^9L;!RCs~tk6-X4PcEczW+|vWm^j%A&Jicp)_LUy`pb|4A zG^~f^UJczezT;vqR~+z^RS!rwY+T(Q)SABsN%eUQkN80KE;G&=`O_CudD81%(a7H( zYl{rVP**#P=q-=bS$<#X*sH+ovw8d}i5~lw#bZmdgKeQB+v2e7d1}S{jJw!h`IQG4 zOl@dEf~0!>yDRtJ%L4I$^)x@L)r9tVOy$1NuTX(__3+%-KOX51hU^G*mmq@*!<*oR zZPVMMo`knp$OgrB3aL71JW7#wz(sD(RTm3}I4_@JA(2PEBm;W$fEM}m;(gu}CT&x_ zyHmjh4%E@S6l;~*4GD8+B!`Rj&{2~=x@h0< z>eE*M06DD}r0%hqh83TtDFyTjFAp@A2*MXiYj<6tKppreKmKvQg8?P&_1FS1^#DY4 z%#kxgBtZ3BX1FGjD1Dir>#6p9cQj)`I%1bwND0x7QCFJo+*Lj93&T=3aSun}$&d{_ zQ4?FTUkGJ=EyR7-ur_G}pJ{GV4jK1b9q~2A<;$YGk16g{!p(wD&=d8&cqrX#g&<{o zCdmgrPs%*Nm+d0D%u;wC6SEzO?GRYnrt7p3{A+qY|s?Y|hE19gv$uz))c0MFr z4|kklH>8C#*BulA-en5sr0wYKsodwNI<(g$!caP#v-YQa6jmP>j$P?Cwx{71m(gSp z6Erw>zThb{1c2Dg#OuIs=hd%OSkMi9z_Ze~=~|AYgMQ$i$OH1hnH%+pr?_ZR2;O}? zpl;BBg60Dd5{CT(b{7X7P`yUr2!cppZq{l6fh=QrJ@t48${S}uKyb6h#qbM#3Xm~v zUE~A2F+QS5W0We%x-MY84SLN$OMfEUB}HbNB(d55?FVgX0f)qLYo>K=;( z^Sg-vGl?Nx{Fr+LhXpv8pY{!|C<746cWtcX$Zr}bywPvS)686b+hpz&d0&9#&pWSr z#_>{fiEpQuPFDcPf`MAP8kDhmG%yEI%o9LC=PnOljo!WWgjvpa_fh!zMZ3vMhZ9!K z%Hf}7Im+GgSDuwO*H|9Zrrh#u8tjBWM zCap=q*JI(ok}HOl`j=m7l7Guup}NMjb?5dr;SJfdMaU+z&6ih)^hDBq;@0~Gr>n6v zhq}EQg$5BB0;wRRiEDap03QJ?C&P{N2@A3tv?0NLn>{LwfI27Rg4`^XL|^sy`v4O1 zcUnmnjx8@B?8rqpJEl@G<7&#dIl-2t>Le}qmMMro`k?L17(Qi{ppOxm)IB&*tgm+` z5nl4_Je!8fYO3L8k#^~WYOwF>^lPQY4=gZ1z1G2Q$=P&V*NhE%> z^oxZLJ`KHmTN2yF#vMK2HKKB4nY$t;^09l(NoMr(Qq4_TAenTJgqKH)f0!w47^rK? z;c#ZGpR(i0VCy#G@tI@`j{7P!s0_QM&6%CC1CaHKAZE}R#GMJZGir19wSNFXf7U&) z{hsgq_6GW^pB0+Mhzi+z5XHLiwPDuemqUm9jkL?BmQ6d)>u(Kr4<(6*4bntIhe^m3 zhFuEP6C%Pe5Unsx{uAx!PDOG>>i6Sx@T83-Xhm^`(KJ3Jz}czJva)bfh33M5^@&nI zOv!ikv|-4L(3~@F{Yv?lEa(Aa6V6>zv5@pLi{a9N9k`NHSu?c4xdtC;d(b&$fTF*@ z`zRm$LDmFO-l&th6jZIk#XGr=dwHCe%O-g07<(A zQDp3$0znM_v;e}+_+hyLCGt?LvyE#aXG?@EsdB6TwrjTF!UUVpHH0{iGh&c9JfGD#1J~_R5bx0U}LJaZv6}llw&o;=$fE>)2hvCa~&`vr3G`f zzQJ_YuBW`mnZ~b$Lz?5FqpQ`1t!Co7Gy-&k_m&sS%GJYN1q7Op)sZrvTgU{#(tOZS z+H&c~4B7HZzZ_-}q@Jk7qxdB{9c6s^9T47Ih{Gl}6 zA5E?VW6r=o8zOYb=QOBED7%YX)YP`SCWhMdi}%b;tIjr)kG7R7rDjKdS(lA#u9-9XRFJbj8)tfJwon&SzuDAE)ij=gNf;O%=&3cXPS^b+awB2kGZ5zn zn3N9AE%X2*!}PSVZMO7Ho2EZ>-@bI`zKH65E3Hk>$6rrBlpUonea5;LtlFQrxXmF^ z`JIE0pKGI@m&fp691L$U5j|D;xuqytA1ga6$TAD9Xv}r_^el9Mo4OeL3Tc*ki}vx&FV53pKoh1K{^5M}eFhvoazW zIy`^7y-V8)HKL*>N?0MZL84k1;}t=v$U>ajCIf%^WA$U%2||9tp(U@|PmnO14-cL6 zB1y>=epAN?c-sSCQJMbMaO(rxQKdAI7w_7KVx?{%u_it#((H&CL!z= znDNH7Sas%EF-(>zaNA;%=c1Hc1W#Dl`(D)geE{MIXW^oW^_8DvgJnZBPX7dPG$yI2 zU=p6Qbe%DBIoEBrZl4PU55JHfUftM`#K?%vSE<7=BdD_x3fU+sO%fNe@3N;av?w7} z3|~qHzqykzhr%V<<}oCBpwpDx6Z+o|J{w>t&=y-nPEHZ`dn5X+4SpVhsr zi%tRjxtH*%UxV{|s_e?`ifoX8*n#cF(euxpO_BA2S*`LY2kX@~rHok9U>>ttC`58= zMNL(eSf1UcGBo#cz3>p;GJZECxAaM9MGX}f)02Gz5p>5NV~%!PqRP>|JyuLYkn)G^ z6ZdGHXzvWADH7`*gT(UBE>3v` zSs}$xlU_^3;~V8NDu@gD;j+cj?MYAn0qt{lo}i5Y5>9CTPF*Io92ecen)7lQFoDrD6I2if^ud3N-~qIvPI{SyCkSg9E6o1Hi*g70 z;Wqc*fP1($4m=6kt+9y`{e*)Im+y|^o>Y~?MRr231^ilet_9rd1z|cH=vu(-9(~t1 zB?8QwC)eo!tR*l9M{N0rf2ICIGl)}IO94m{vO+fc$S<%g=VOob`kS+acm0hI$?MMf z&oaUemy6q2Zm_&l2(V;7b=>pmQC?K*JfcYqvU{#d?mz(-zlqjufnlx!UFC8&8d@({ z5_jT7T+J=3-B`|Q!VZ+D3+5v4tjjErKj^`-E_YCIUE)0QQUM_+e>}GW5EUP3NJCM# zp4xKw8)B*9cs1ni*IW?4ASj9l!&DFhFt3qCzZicCKi*Rx?mj+c>?*%%3WdQ>XRfz@qX?i;!u$!V9w4oIKse_X@Q$7`JT zH`3+Pc4Lwp4qv-g)f0=xR`)f5RU=PVqh0~A<2#pj(r5+Ln4 zvRkjeMoGm$wv_}oD%rM;;SU=53HK2mkUj1*0_moAv~Si80jF*~?{-IwI3EMHa7h1U z58>sdbqxV*P&s;v>Wz;hJ<3?C|3)evQmJ84B+iCd{*|p(_nL@ zg_v*ocLwShRPZj`=FwqMK#g2a#xCO;2Vv(!R8%Gv`*jTXQ_tkGqM&P&|Q9+4p=#ABz$OkjZi%HWA zwYHDCPKi}W22EPOiKNVoeZhlxgJEiO>$X=hTKO+1jpN~hY9yg$?zg)AiiglWa8=u5 zb4!=U%sM(-9i| zB>8|@A&dH0Y;!oG3b{^UF)IU33m&~m-&xWTA)J|j{$+9v+=-eS zxb*z2zjlx6qs?}9d3>s0fojXE{z}3kHHI$oiL-Z2`MUrPM^U?uZAXs#vsFPPY52%T zj#8i}TG*~dJIId2!dY9oHbR#x_bCCA^=m0WFr4H^h&KG`sSm9p+t%*4y3hfcwT*MY z{YF2hhr0rw^Q3J276ZeUl4F!z)K`C&ABBfuW!o+M1e&LyTWW)zLD(tuVcA+`p}z-R zDKl=zBYx!FsN1VJus7I(c2#A93Y`iexi}f8g(tanF+#~^k>lf=0V|z)W+aet*Xrx) zwyJ<0a5_SJ^eBOzJ}kU=-FkmH#jYR>-ldW1WDfOkvDlzSu9Aff@TH85e%jnJ|8mqg zl?p~T*&<6?za(S=z(+I#lWbIhXWaSlo|?k(%<1P)d_B$WpAKg;J&)&8+kw>+)Kv`DFVf*x(>vO#>lHi{p z5*|$gN*D;~U8P1 znsz-T*%8Q~0^QY9wP7{Tim<{7X8>!7ARd5(z+M71iU6+n%PU7G!TUHd&P7ez)quZ6 z1-~Xv?4_Vy1tdIyZW9;N4il8IqQ0~EUp*iNSZbX05*lNG!;EFkQC6$8rGi(Fn)#S$ z{TFeNG+XXmOg=j5{tkS6iDt4HfxoME#zR+6 z5xWrszWG1IEx0=MfHXDGT{+q<)(Aq1>2=vr{nv>&XZ!!Q0kYM0WFn50k4(f7b|xF4 zHGe`*qm+hKb_ycmA*SYcX_yVxw+NuA-YatRLYCj9a8{ZnZG(H zeSJqM5HVjm2XSk>=pHwJeQ|f9e!FAxh%S+uZ&kWJQSIeSOWMS}&}v;3!Xy8a?N0Z+ z$+YH4{rgsDk^%}aI$aCM@!nl?dnH^qf1Mf*b{072uB|Z~_|DPC>aZ}L`PFsgfd)hy zlKacoYFm)y1nLn0KXfbfnjX32c2!p1=?m9LbgeV`(HSa2%}t7Kd->uljvOL^i~eZ6 z`i1!0@x@8{PJyNfOw!B{0S27&IV+#vzyRo{V?a9()9lwY%)>V$+j6o+x_d zOCI=p?~qV{6ITYLc*SoM>IXwZp^AhGcQg>7Ecz}lh-Q`RpBv~Bs4jHhvtxNyI)LN( zcd^b6HfwtaYh}+u`QdI=SqZU+^Bonm{;v4Ir@J1Xv_+X4w@J#$(U%uqHsmRsOr=Fo zcXRRv=wtxz2Y%F(8V~}?IW5EYt}CxCvOx3~KmKCn3c*e# z>?3UmHiEYP&r{@44x3HIhMc=$UBW zFtGL{xosrAD#Afu{``Dp@onG6VDm9$ay(~F7Gd}8L*VkV{(_f3XNH>r z;z1h=Y}uZmG1I{OAu8o2`V^)>0DPxgX8UjTU?$CH3yeTPmdLgG|Cj$2kW?4*oCe6) z2mrO3|5|T0wL3#T2V`lI0A2rHVUOss5+axf+MnrPOaUkJe3$pkyJ+o;xvXGO%a-R% zj>~=;;o?u9Kw~k#o;v2Q>bqYr^{E#kJYsyiTKw8pf64HT9Bi5zpv{i3W5n=7YQ6o( z#vt@>wcKUTv-k`UB9SiA(OD|V+x2DA+XCinQaJ5Ug(tgJgm_mSsPXO`PW=N3HKEOH zv#&XUC4~iaYfY=tIp2fqG-cWCJ{53eh=$yEcjbXU{b{6u3mJDA7BGGGc7%4(T%2MB zxWsod$YG0xB9wMANuC4wH!+R8nVq9!Ep3jP`3*aLW=A)O!6KGDH`g{cSZ3b120Z8s zCple)KCmq1;Wtw~Q1z%- zFjPl$XXG$4%b@>F?~zH_iOa+re$>UK4ogVXR(mV$IJ13!qj+DwiK=%%q;hgX#eaV&Oo5r!k0pM9 z(Wu0gDZ#d><}5EJuf1ZOdSi&ON#i*#TtQuTegrKx@(oYDd==sHbKe5U5s$wpWO(rK z#`c%29FI#r{^dxT*`@?KrJ)&Kc+`~E| zu=?LSN>jZ*%*WiApvhoR)2XEGmuTJ^K&7 zwVpi*uly_F5W8eYpJP}!5NGRZWD{HU&SU8M_IB?nDcp?1Vr2FHmuQ~-8go{1WZ>04 z_2{8`NN#o~H+?fnXI>#RSE{sVUFaJ`UL*QTLhp*05il%Cc!G}xX&?*s38)+zrG`Jv zxOE!KNDkfOg`DNM=^Aua3YWsZg(xPVLxRy)afBbsi zWibGpFE^A)h<5+3Cs`eskl+wT`zPz$xiS1{4N`*lXd4IF^qG<|Yx?2XR)lOwdBJxf zO%g@k2P0R@9Ugaf3o?Zqb50Q3){hnaw`$NBKETD%r76=^O9mSySv+^$>R?_tTIZfP zW$9S(^+`Qi8Q_Ku>1QYEZ#fO|BR&g`fx5GNc@s7CSI%~!6@)OgBWHfpJD0xIrj3VT zBdd-Y!N{>)b<90@Z!Uk2M(tM{wGeS{>u7;gyPv49IeK=IKMwAIMT-o+j zp(ne?%FIM^!!-o~N(E)y5+_1F=);@#i=Nwk7{9@5$@NuH*<@isl)-czO?O?THmQ}W=|O`d-P>=zLA7quyyc90 z`b99s?(Wu8*Y(|%8;+>foof&5Uy5+!3bKG=*Z--gz5eehk^cPG6+{0UZEL>)wYUEn z_vBNPNi!*yu$4deoG&1?O=ri{HQ8vJo=(w@#g;l DM1hTM literal 0 HcmV?d00001 diff --git a/sec/ex-4_iptables.adoc b/sec/ex-4_iptables.adoc new file mode 100644 index 0000000..f995545 --- /dev/null +++ b/sec/ex-4_iptables.adoc @@ -0,0 +1,89 @@ += Iptables with shorewall! +Apostolos rootApostolos@swarmlab.io +// Metadata: +:description: Intro and Install +:keywords: sec, tcpdump +:data-uri: +:toc: right +:toc-title: Πίνακας περιεχομένων +:toclevels: 4 +:source-highlighter: highlight +:icons: font +:sectnums: + +include::header.adoc[] + + +{empty} + + + +[[cheat-Docker]] +== Install swarmlab-sec (Home PC) + +HowTo: See http://docs.swarmlab.io/lab/sec/sec.adoc.html + + +.NOTE +[NOTE] +==== +Assuming you're already logged in +==== + + + +== shorewall + + +**Shorewall** is an open source firewall tool for Linux that builds upon the Netfilter (iptables/ipchains) system built into the Linux kernel, making it easier to manage more complex configuration schemes by providing a higher level of abstraction for describing rules using text files. + +https://en.wikipedia.org/wiki/Shorewall[More: wikipedia] + + +=== Installation + +Shorewall is already installed on swarmlab-sec. + + +== Basic Two-Interface Firewall + + +basics.png[Basic Two-Interface Firewall] + + + +.connect to master first +[NOTE] +==== + +Assuming you're already logged in master! + +swarmlab-sec login +==== + + + + + + +:hardbreaks: + +{empty} + +{empty} + +{empty} + +:!hardbreaks: + +''' + +.Reminder +[NOTE] +==== +:hardbreaks: +Caminante, no hay camino, +se hace camino al andar. + +Wanderer, there is no path, +the path is made by walking. + +*Antonio Machado* Campos de Castilla +====