Book Review: Linux Firewalls - Attack Detection and Response with iptables, psad, and fwsnort
Working in a university environment, one gets used to doing more with less. Security, particularly, seems to never get the budget it deserves though it has increased in recent years. For all their limitations, open-source tools are the vital lifeblood that makes IT work, and work securely, in academia.
Using Netfilter (or commonly called iptables) for the firewalls have managed to reduce costs but provide stable and secure service to the users. However, for some time we've been looking to get more out of our firewalls to enhance the security and data reporting from the firewalls. The syslogs are all fine and good, but no one is seriously going to review them without some application doing the heavy lifting of making the data presentable.
Linux Firewalls, in this regard, is a great resource. It provided insight and helpful information into additional tools to get the most out of iptables and to add in additional functionality. The book covers basic iptables fundamentals and then covers the additional applications of psad, fwsnort, fwknop and data visualization of firewall logs.
-
- Login or register to post comments
Printer-friendly version
- 11372 reads
PDF version
More in Tux Machines
- Highlights
- Front Page
- Latest Headlines
- Archive
- Recent comments
- All-Time Popular Stories
- Hot Topics
- New Members
- July 2013 (394)
- June 2013 (291)
- May 2013 (212)
- April 2013 (194)
- March 2013 (202)
- February 2013 (134)
- January 2013 (227)
- December 2012 (196)
- November 2012 (214)
- October 2012 (180)
- September 2012 (211)
- August 2012 (190)
- July 2012 (169)
- June 2012 (259)
- May 2012 (198)
- April 2012 (227)
- March 2012 (209)
- February 2012 (219)
- January 2012 (406)
- December 2011 (328)
- November 2011 (424)
- October 2011 (315)
- September 2011 (433)
- August 2011 (510)
- July 2011 (518)
- June 2011 (570)
- May 2011 (566)
- April 2011 (503)
- March 2011 (621)
- February 2011 (555)
Recent comments
1 min 1 sec ago
2 min 55 sec ago
1 hour 2 min ago
1 hour 18 min ago
1 hour 57 min ago
3 hours 50 min ago
9 hours 17 min ago
16 hours 27 min ago
16 hours 58 min ago
17 hours 6 min ago