linux poison RSS
linux poison Email

GUI tools to build Iptables/Firewall rules

GUI tools to build Iptables/Firewall rulesfwbuilder

Firewall Builder is a GUI firewall configuration and management tool that supports iptables (netfilter), ipfilter, pf, ipfw, Cisco PIX (FWSM, ASA) and Cisco routers extended access lists. Firewall Builder uses object-oriented approach, it helps administrator maintain a database of network objects and allows policy editing using simple drag-and-drop operations.

It is run on a separate host system, where you create the policy files, and then copy them over and run them on the target system. It is able to handle everything from very simple rulesets to large and rather complicated ones. It has extensive abilities to handle different versions and installations of iptables, by configuration of which targets/matches are available on each host system, etcetera. The end result may be saved in an parsable configuration file (e.g., the real firewall scripts).

fwbuilder can be found at http://www.fwbuilder.org.


GUI tools to build Iptables/Firewall rulesTurtle Firewall Project

Turtle Firewall is a software which allows you to realize a Linux firewall in a simply and fast way.
It's based on Kernel 2.4.x/2.6.x and Iptables. Its way of working is easy to understand: you can define the different firewall elements (zones, hosts, networks) and then set the services you want to enable among the different elements or groups of elements.
You can do this simply editing a XML file or using the comfortable web interface Webmin.


You can find the Turtle Firewall Project and more information over here


GUI tools to build Iptables/Firewall rulesEasy Firewall Generator for IPTables

Easy Firewall Generator is another interesting development when it comes to iptables and netfilter. Basically, Easy Firewall Generator is a PHP webpage where you specify options and specifics of your firewall, and once all of the configurations are done, you click a button, and the webpage spits out an iptables ruleset that you can utilize.

The script contains all the basic rules, and more specific ones to contain strange patterns in packets. It also contains specific IP sysctl changes that may be needed, loads necessary modules, et cetera. The whole ruleset is also written in a redhat init.d format.




1 comments:

Post a Comment

Related Posts with Thumbnails