Rocksolid Light

Welcome to novaBBS (click a section below)

mail  files  register  newsreader  groups  login

Message-ID:  

"BTW, does Jesus know you flame?" -- Diane Holt, dianeh@binky.UUCP, to Ed Carp


devel / comp.unix.shell / GUI for iptables.

SubjectAuthor
* GUI for iptables.hongy...@gmail.com
`* Re: GUI for iptables.Janis Papanagnou
 `* Re: GUI for iptables.Aragorn
  +* Re: GUI for iptables.Grant Taylor
  |`- Re: GUI for iptables.hongy...@gmail.com
  +- [meta] Re: GUI for iptables.Janis Papanagnou
  `- [OT] firewalls and usenetJavier

1
GUI for iptables.

<b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4573&group=comp.unix.shell#4573

  copy link   Newsgroups: comp.unix.shell
X-Received: by 2002:ac8:570c:: with SMTP id 12mr52284017qtw.138.1636012655043;
Thu, 04 Nov 2021 00:57:35 -0700 (PDT)
X-Received: by 2002:ac8:5802:: with SMTP id g2mr40564474qtg.311.1636012654861;
Thu, 04 Nov 2021 00:57:34 -0700 (PDT)
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!news.misty.com!border2.nntp.dca1.giganews.com!nntp.giganews.com!news-out.google.com!nntp.google.com!postnews.google.com!google-groups.googlegroups.com!not-for-mail
Newsgroups: comp.unix.shell
Date: Thu, 4 Nov 2021 00:57:34 -0700 (PDT)
Injection-Info: google-groups.googlegroups.com; posting-host=47.241.183.73; posting-account=kF0ZaAoAAACPbiK5gldhAyX5qTd3krV2
NNTP-Posting-Host: 47.241.183.73
User-Agent: G2/1.0
MIME-Version: 1.0
Message-ID: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
Subject: GUI for iptables.
From: hongyi.z...@gmail.com (hongy...@gmail.com)
Injection-Date: Thu, 04 Nov 2021 07:57:35 +0000
Content-Type: text/plain; charset="UTF-8"
Lines: 3
 by: hongy...@gmail.com - Thu, 4 Nov 2021 07:57 UTC

It's well-known that manually add/remove/design iptables rule is tedious/cumbersome/error-prone. I want to know if there is any powerful and feature-rich iptables GUI available on Linux? I've tried fwbuilder, but it doesn't meet my expectations.

Regards,
HZ

Re: GUI for iptables.

<sm0a1s$a4a$1@dont-email.me>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4576&group=comp.unix.shell#4576

  copy link   Newsgroups: comp.unix.shell
Path: i2pn2.org!i2pn.org!eternal-september.org!reader02.eternal-september.org!.POSTED!not-for-mail
From: janis_pa...@hotmail.com (Janis Papanagnou)
Newsgroups: comp.unix.shell
Subject: Re: GUI for iptables.
Date: Thu, 4 Nov 2021 10:44:28 +0100
Organization: A noiseless patient Spider
Lines: 14
Message-ID: <sm0a1s$a4a$1@dont-email.me>
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: 7bit
Injection-Date: Thu, 4 Nov 2021 09:44:28 -0000 (UTC)
Injection-Info: reader02.eternal-september.org; posting-host="cad4fdccaaf212528dbffc2421b81430";
logging-data="10378"; mail-complaints-to="abuse@eternal-september.org"; posting-account="U2FsdGVkX1/OyNo06bcO17P9IBmZTnSQ"
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101
Thunderbird/45.8.0
Cancel-Lock: sha1:kLpsTRJawKRHxTFo2ZVVdj8i4rk=
In-Reply-To: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
 by: Janis Papanagnou - Thu, 4 Nov 2021 09:44 UTC

(Lately there seem to be quite some off-topic posts here in CUS.)

On 04.11.2021 08:57, hongy...@gmail.com wrote:
> It's well-known that manually add/remove/design iptables rule is
> tedious/cumbersome/error-prone. I want to know if there is any
> powerful and feature-rich iptables GUI available on Linux? I've tried
> fwbuilder, but it doesn't meet my expectations.

Isn't that a Linux (or networking or Unix admin) question?

>
> Regards, HZ
>

Re: GUI for iptables.

<20211104172902.2e0d6948@nx-74205>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4580&group=comp.unix.shell#4580

  copy link   Newsgroups: comp.unix.shell
Path: i2pn2.org!i2pn.org!eternal-september.org!reader02.eternal-september.org!.POSTED!not-for-mail
From: thoron...@telenet.be (Aragorn)
Newsgroups: comp.unix.shell
Subject: Re: GUI for iptables.
Date: Thu, 4 Nov 2021 17:29:02 +0100
Organization: A noiseless patient Strider
Lines: 86
Message-ID: <20211104172902.2e0d6948@nx-74205>
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
<sm0a1s$a4a$1@dont-email.me>
Mime-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: quoted-printable
Injection-Info: reader02.eternal-september.org; posting-host="774d9caab93e3c9460ca6ca8a0361f20";
logging-data="27369"; mail-complaints-to="abuse@eternal-september.org"; posting-account="U2FsdGVkX1+a8e3vhfsTUwdreCF5jloh"
Cancel-Lock: sha1:NIW/6WtpmnQ7dElljyirPqE2mw0=
X-Newsreader: Claws Mail 4.0.0 (GTK+ 3.24.30; x86_64-pc-linux-gnu)
 by: Aragorn - Thu, 4 Nov 2021 16:29 UTC

On 04.11.2021 at 10:44, Janis Papanagnou scribbled:

> (Lately there seem to be quite some off-topic posts here in CUS.)
>
> On 04.11.2021 08:57, hongy...@gmail.com wrote:
> > It's well-known that manually add/remove/design iptables rule is
> > tedious/cumbersome/error-prone. I want to know if there is any
> > powerful and feature-rich iptables GUI available on Linux? I've
> > tried fwbuilder, but it doesn't meet my expectations.

There used to (and still may) be something called WebMin, which was/is a
complete browser-based GNU/Linux administration user interface, and I
believe — but don't pin me down on this — that it also had/has a
firewall section.

You would simply direct your browser at...

http://127.0.0.1:10000

.... and log in as root.

The software was supplied as standard with RedHat and derivative
distributions at the time, and there are commercial versions of it as
well, for managing multiple physical or virtual servers.

The authors also offer (and sell commercial licenses for) similarly
working software for domain hosting, albeit that they only officially
support CentOS.

Their software does not come in .deb packages, so unless Debian is
repackaging said software and offering it via their own repositories,
you're out of luck. Well, unless you'd be willing to build the
software from sources, of course.

Either way, DuckDuckGo is your friend.

> Isn't that a Linux (or networking or Unix admin) question?

Specifically GNU/Linux, yes, but you-know-who is too lazy to...

- think for himself;
- do his own research;
- set up a proper newsreader instead of using Google Groups
(which I am filtering out in all newsgroups); and thus...
- find himself a more appropriate newsgroup whenever such a choice
would be due.

This group here is his one-stop shop for everything computer-related.
He's a help vampire, and the worst part of it all is that you are all
too willing to keep on feeding him.

For all we know, HZ could be...

- asking you guys to solve some task assigned to him at work, which
HE — not you — is being paid for; or...
- doing something illegal/unethical.

The only active regular of this newsgroup beside myself — and I'm not
even an active regular, because I'm not a professional sysadmin and I
don't hold a degree in computer science; when it comes to computer
science and information technology, I am basically a complete autodidact
— who seems to find Hongyi's perpetual vampirism sufficiently curious is
Kenny. Everyone else is all too eager to show off their knowledge of the
various shells, awk versions, regular expressions, and what is and is
not specified in the various UNIX and POSIX standards.

I am a moderator at the official forum for Manjaro Linux, and I am
currently said forum's leader in terms of the number of accepted
solutions. So I am definitely not afraid of offering help to
newbies — and even not-so-newbies — in the form of literal
instructions. I've also written a couple of very step-by-step tutorials
that are regularly being linked to — by myself as well as by my fellow
moderators — but every once in a while you really do have to tell people
to RTFM, and especially when dealing with a help vampire.

</rant>

--
With respect,
= Aragorn

Re: GUI for iptables.

<sm171p$dvp$1@tncsrv09.home.tnetconsulting.net>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4581&group=comp.unix.shell#4581

  copy link   Newsgroups: comp.unix.shell
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!tncsrv06.tnetconsulting.net!tncsrv09.home.tnetconsulting.net!.POSTED.alpha.home.tnetconsulting.net!not-for-mail
From: gtay...@tnetconsulting.net (Grant Taylor)
Newsgroups: comp.unix.shell
Subject: Re: GUI for iptables.
Date: Thu, 4 Nov 2021 11:53:39 -0600
Organization: TNet Consulting
Message-ID: <sm171p$dvp$1@tncsrv09.home.tnetconsulting.net>
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
<sm0a1s$a4a$1@dont-email.me> <20211104172902.2e0d6948@nx-74205>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
Injection-Date: Thu, 4 Nov 2021 17:59:21 -0000 (UTC)
Injection-Info: tncsrv09.home.tnetconsulting.net; posting-host="alpha.home.tnetconsulting.net:198.18.18.251";
logging-data="14329"; mail-complaints-to="newsmaster@tnetconsulting.net"
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101
Thunderbird/78.13.0
In-Reply-To: <20211104172902.2e0d6948@nx-74205>
Content-Language: en-US
 by: Grant Taylor - Thu, 4 Nov 2021 17:53 UTC

On 11/4/21 10:29 AM, Aragorn wrote:
> There used to (and still may) be something called WebMin, which was/is
> a complete browser-based GNU/Linux administration user interface,
> and I believe — but don't pin me down on this — that it also
> had/has a firewall section.

Yes, Webmin is still a thing.

Yes, Webmin supports* multiple firewalls.

*I'm currently having a minor issue with Webmin's firewall module for
{iptables,netfilter}-persistent on Debian 10. But this may be simply a
mis-configuration by the person that installed it. -- Webmin is
managing the rules file that the system uses. I'm just having a problem
with it applying the rules. I can manually apply the rules that Webmin
created without any problem.

> You would simply direct your browser at...
>
> http://127.0.0.1:10000

Port 10,000 is the /default/ port.

> Their software does not come in .deb packages, so unless Debian is
> repackaging said software and offering it via their own repositories,
> you're out of luck. Well, unless you'd be willing to build the
> software from sources, of course.

Webmin itself installs quite well on contemporary Debian systems via a
script that they provide.

--
Grant. . . .
unix || die

Re: GUI for iptables.

<00120b2f-14bd-4e8d-9dd4-0c7654e7e701n@googlegroups.com>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4582&group=comp.unix.shell#4582

  copy link   Newsgroups: comp.unix.shell
X-Received: by 2002:ac8:5e0a:: with SMTP id h10mr57586468qtx.195.1636087674290;
Thu, 04 Nov 2021 21:47:54 -0700 (PDT)
X-Received: by 2002:a37:a5c7:: with SMTP id o190mr7252895qke.197.1636087674150;
Thu, 04 Nov 2021 21:47:54 -0700 (PDT)
Path: i2pn2.org!rocksolid2!i2pn.org!weretis.net!feeder6.news.weretis.net!news.misty.com!border2.nntp.dca1.giganews.com!nntp.giganews.com!news-out.google.com!nntp.google.com!postnews.google.com!google-groups.googlegroups.com!not-for-mail
Newsgroups: comp.unix.shell
Date: Thu, 4 Nov 2021 21:47:53 -0700 (PDT)
In-Reply-To: <sm171p$dvp$1@tncsrv09.home.tnetconsulting.net>
Injection-Info: google-groups.googlegroups.com; posting-host=47.241.183.73; posting-account=kF0ZaAoAAACPbiK5gldhAyX5qTd3krV2
NNTP-Posting-Host: 47.241.183.73
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
<sm0a1s$a4a$1@dont-email.me> <20211104172902.2e0d6948@nx-74205> <sm171p$dvp$1@tncsrv09.home.tnetconsulting.net>
User-Agent: G2/1.0
MIME-Version: 1.0
Message-ID: <00120b2f-14bd-4e8d-9dd4-0c7654e7e701n@googlegroups.com>
Subject: Re: GUI for iptables.
From: hongyi.z...@gmail.com (hongy...@gmail.com)
Injection-Date: Fri, 05 Nov 2021 04:47:54 +0000
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Lines: 33
 by: hongy...@gmail.com - Fri, 5 Nov 2021 04:47 UTC

On Friday, November 5, 2021 at 1:53:43 AM UTC+8, Grant Taylor wrote:
> On 11/4/21 10:29 AM, Aragorn wrote:
> > There used to (and still may) be something called WebMin, which was/is
> > a complete browser-based GNU/Linux administration user interface,
> > and I believe — but don't pin me down on this — that it also
> > had/has a firewall section.
> Yes, Webmin is still a thing.
>
> Yes, Webmin supports* multiple firewalls.
>
> *I'm currently having a minor issue with Webmin's firewall module for
> {iptables,netfilter}-persistent on Debian 10. But this may be simply a
> mis-configuration by the person that installed it. -- Webmin is
> managing the rules file that the system uses. I'm just having a problem
> with it applying the rules. I can manually apply the rules that Webmin
> created without any problem.
> > You would simply direct your browser at...
> >
> > http://127.0.0.1:10000
> Port 10,000 is the /default/ port.
> > Their software does not come in .deb packages, so unless Debian is
> > repackaging said software and offering it via their own repositories,
> > you're out of luck. Well, unless you'd be willing to build the
> > software from sources, of course.
> Webmin itself installs quite well on contemporary Debian systems via a
> script that they provide.

Thank you for letting me know of this tool.
HZ

[meta] Re: GUI for iptables.

<sm5trj$ev0$1@dont-email.me>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4593&group=comp.unix.shell#4593

  copy link   Newsgroups: comp.unix.shell
Path: i2pn2.org!i2pn.org!eternal-september.org!reader02.eternal-september.org!.POSTED!not-for-mail
From: janis_pa...@hotmail.com (Janis Papanagnou)
Newsgroups: comp.unix.shell
Subject: [meta] Re: GUI for iptables.
Date: Sat, 6 Nov 2021 13:53:07 +0100
Organization: A noiseless patient Spider
Lines: 38
Message-ID: <sm5trj$ev0$1@dont-email.me>
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com>
<sm0a1s$a4a$1@dont-email.me> <20211104172902.2e0d6948@nx-74205>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: 7bit
Injection-Date: Sat, 6 Nov 2021 12:53:07 -0000 (UTC)
Injection-Info: reader02.eternal-september.org; posting-host="c7871fafcbd03c57d188d5cf29eb63cf";
logging-data="15328"; mail-complaints-to="abuse@eternal-september.org"; posting-account="U2FsdGVkX19grydzLesh38f9XyNuw8Sh"
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101
Thunderbird/45.8.0
Cancel-Lock: sha1:dm+Y6zYbMaavSvgX5KplpjkN3e8=
In-Reply-To: <20211104172902.2e0d6948@nx-74205>
X-Enigmail-Draft-Status: N1110
 by: Janis Papanagnou - Sat, 6 Nov 2021 12:53 UTC

On 04.11.2021 17:29, Aragorn wrote:
> On 04.11.2021 at 10:44, Janis Papanagnou scribbled:
>
>> (Lately there seem to be quite some off-topic posts here in CUS.)
> [...]
>> Isn't that a Linux (or networking or Unix admin) question?

(Note that this was a rhetorical question, coupled with the hope that
the OP might re-think and better control his posting habits. All we
can do is make suggestions, technical and meta.)

> Specifically GNU/Linux, yes, but you-know-who is too lazy to...
> [...]
> This group here is his one-stop shop for everything computer-related.

A good characterization.

> He's a help vampire, and the worst part of it all is that you are all
> too willing to keep on feeding him.

As long as it's on-topic we can only complain that he's not doing his
homework, and we can be dissatisfied about the learning curve.

Is your suggestion to completely ignore him (actually like putting him
in our killfiles)? (Note: not a rhetorical question.)

(Personally I find some "spin-off replies" I read here even useful. But
the mass of such postings is annoying.)

> [...] Everyone else is all too eager to show off their knowledge of the
> various shells, awk versions, regular expressions, and what is and is
> not specified in the various UNIX and POSIX standards.

Your personal aspects aside, aren't these topics a substantial part of
the newsgroup agenda? (Yes, now again a rhetorical question.)

Janis

[OT] firewalls and usenet

<qoidnRN3cPA4HRX8nZ2dnUU78TfNnZ2d@brightview.co.uk>

  copy mid

https://www.novabbs.com/devel/article-flat.php?id=4595&group=comp.unix.shell#4595

  copy link   Newsgroups: comp.unix.shell
Path: i2pn2.org!i2pn.org!weretis.net!feeder6.news.weretis.net!4.us.feeder.erje.net!2.eu.feeder.erje.net!feeder.erje.net!feeds.phibee-telecom.net!border2.nntp.ams1.giganews.com!nntp.giganews.com!buffer2.nntp.ams1.giganews.com!buffer1.nntp.ams1.giganews.com!nntp.brightview.co.uk!news.brightview.co.uk.POSTED!not-for-mail
NNTP-Posting-Date: Sun, 07 Nov 2021 19:43:01 -0600
From: inva...@invalid.invalid (Javier)
Subject: [OT] firewalls and usenet
Newsgroups: comp.unix.shell
References: <b3241738-2b13-495e-a7dc-a2335e0444e4n@googlegroups.com> <sm0a1s$a4a$1@dont-email.me> <20211104172902.2e0d6948@nx-74205>
Message-ID: <qoidnRN3cPA4HRX8nZ2dnUU78TfNnZ2d@brightview.co.uk>
Date: Sun, 07 Nov 2021 19:43:01 -0600
Lines: 21
X-Usenet-Provider: http://www.giganews.com
X-Trace: sv3-9r0ZPsqlA+ExvT85N3t4DCtgaXh4Cwaava+VF1v9yAIyhOnKrEab+832c5IuWVBKBToG/wrSLlc1VPI!i1K43ihM6Ft8JBEtPAlcJiFXGufgTMRip7nzdiLB0ewsIphxNQQg36d3/22SvqYzrzU+x54D/Fk8!iYNx/NP9pfZyWn2MJrriciC33jc=
X-Abuse-and-DMCA-Info: Please be sure to forward a copy of ALL headers
X-Abuse-and-DMCA-Info: Otherwise we will be unable to process your complaint properly
X-Postfilter: 1.3.40
X-Original-Bytes: 2009
 by: Javier - Mon, 8 Nov 2021 01:43 UTC

Aragorn <thorongil@telenet.be> wrote:
> Specifically GNU/Linux, yes, but you-know-who is too lazy to...
>
> - think for himself;
> - do his own research;
> - set up a proper newsreader instead of using Google Groups
> (which I am filtering out in all newsgroups); and thus...
> - find himself a more appropriate newsgroup whenever such a choice
> would be due.

For the third point HZ might have a valid excuse. In HZ's old
messages years ago he was using a newsserver from China (originating
path news.neu.edu.cn!news.cn99.com). After that he changed for a
while to a russian server goblin.stu.neva.ru. I guess the chinese
servers got shut down, so he had to switch to a russian server.
Now he posts from google groups, maybe not because of HZ's laziness,
but because it's getting harder to reach usenet from China.

As a matter of fact the disappearance of university newsservers and
workplaces firewalling ports 119/563 was one of the main causes that
silently precipitated the decline of Usenet traffic in the early 2000s.

1
server_pubkey.txt

rocksolid light 0.9.8
clearnet tor