Fedora Linux Support Community & Resources Center

Go Back   FedoraForum.org > Fedora 17/18 > Security and Privacy
FedoraForum Search

Forgot Password? Join Us!

Security and Privacy Sadly, malware, spyware, hackers and privacy threats abound in today's world. Let's be paranoid and secure our penguins, and slam the doors on privacy exploits.

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 17th June 2004, 10:46 AM
Scoob_E's Avatar
Scoob_E Offline
Registered User
 
Join Date: Mar 2004
Location: FLORIDA, USA
Posts: 104
wifi "zone" for firewall

Ok this is just a rough sketch of what I plan to set up, but I'm not sure if it will work or if its been done before.

Im looking at setting up a firewall for my office. right now we are using IPCOP, but i'ld like a little bit more control (plus if you build it your self you get a better idea of what your working with). Anyhow enough of my rambling:

I want to set it up with 4 nics

1 red zone - for the outside world
1 DMZ - mail servers and what not
1 blue zone - for wifi access
1 green - local trusted zone

I know the red green and DMZ are relatively easy to set up using IPTables, but I havent found any real info on setting up the blue zone.

My idea was to set it up like another dmz only have NoCatAuth set up as the captive portal to keep access control. Once the user authenticates they would have access to the outside world through the firewall (still have to protect the execs windows lappies from the windows vuln of the week) and only allow access to the green zone via VPN.

If I am not chasing windmills (been know to do so), I think it can be done... I know some of the firewall distro's are working on it (wifi zone) but I have yet to see anything. So any comments are welcome, feel free to call me a raving lunatic (I may just be).

Also if anyone knows of any good IPTables references please let me know.

Im just starting on this project and would like to know if I sitting the right way on the horse before I go chasing windmills.... er... monsters

Scoob
Reply With Quote
  #2  
Old 20th June 2004, 01:01 PM
ghenry's Avatar
ghenry Offline
Retired Community Manager
 
Join Date: Mar 2004
Location: Scotland
Age: 35
Posts: 1,019
Why don't you add the wifi zone to the green and limit via wep and mac address access? A lot less hassle, or a new subnet mask?

Here's one thaqt you could follow and amend:

http://www.wifi.com.ar/doc/network/s...ace-howto.html
__________________
http://blog.suretecsystems.com

Last edited by ghenry; 20th June 2004 at 01:10 PM.
Reply With Quote
  #3  
Old 21st June 2004, 03:58 AM
ghenry's Avatar
ghenry Offline
Retired Community Manager
 
Join Date: Mar 2004
Location: Scotland
Age: 35
Posts: 1,019
Just found this:

http://sourceforge.net/projects/wifiadmin/
__________________
http://blog.suretecsystems.com
Reply With Quote
  #4  
Old 21st June 2004, 04:13 AM
Scoob_E's Avatar
Scoob_E Offline
Registered User
 
Join Date: Mar 2004
Location: FLORIDA, USA
Posts: 104
in reply to your first post:

breaking wep and bypassing mac address filtering is a trivial excersize, so I unfortunatly that is not an option, but thank you for the sugestion.

your second post:

I will have to look into that to see if it will work (or made to work) in my situation... thanks

scoob
__________________
Close This World... ...txeN ehT nepO

pyRadar - Open Source Weather Radar For Your Linux Desktop!
Reply With Quote
  #5  
Old 21st June 2004, 04:17 AM
ghenry's Avatar
ghenry Offline
Retired Community Manager
 
Join Date: Mar 2004
Location: Scotland
Age: 35
Posts: 1,019
Appreciated. Just worth a thought though.
__________________
http://blog.suretecsystems.com
Reply With Quote
Reply

Tags
firewall, wifi, zone

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
"ls" and "cd" treat ".." differently inside symlinked directories bnorman Using Fedora 0 19th June 2008 04:49 PM
ODD Problem: "Forums logins" + Linux firewall/gateway = DNS Error DestrukThor Servers & Networking 2 16th June 2007 02:26 PM
DNS error : "localhost.zone file not found" rajat123 Servers & Networking 2 26th April 2007 05:26 AM
Error:visibility arg must be one of "default", "hidden", "protected" or "internal" wangfeng Using Fedora 0 23rd May 2005 04:59 AM
WooHoo - Currently in the "zone" dickinsd Wibble 3 18th January 2005 04:56 PM


Current GMT-time: 11:18 (Wednesday, 19-06-2013)

TopSubscribe to XML RSS for all Threads in all ForumsFedoraForumDotOrg Archive
logo

All trademarks, and forum posts in this site are property of their respective owner(s).
FedoraForum.org is privately owned and is not directly sponsored by the Fedora Project or Red Hat, Inc.

Privacy Policy | Term of Use | Posting Guidelines | Archive | Contact Us | Founding Members

Powered by vBulletin® Copyright ©2000 - 2012, vBulletin Solutions, Inc.

FedoraForum is Powered by RedHat