Re: [Fwbuilder-discussion] iptables install script
Brought to you by:
mikehorn
From: Keith M. <kg...@mp...> - 2003-02-21 21:38:19
|
On Fri, 21 Feb 2003, Pacheco, Michael F. wrote: > Hi All, > > First off - great product - go opensource!! > > I'm running RH8.0 with iptables, compiled and install fwbuilder with the > extra Ximian libs with no problem. Got fwbuilder creating its $hostname.xml > and .fw files, I'm just confused on the Installer script for iptables. All I > can see /etc/init.d/iptables - no /usr/bin/fwb_iptables in /usr/bin all I > see is > > [root@thor bin]# ls fw* > fwb_install fwb_ipf fwb_ipt fwblookup fwb_pf fwbuilder fwhois fwindex > > > I guess fwbd is not ready yet - so how do I get my beautifully compiled rule > set installed into iptables? Should the policy install script section under > the firewalls Compile/Install tab be /etc/init.d/iptables? I though that > was just for starting and stopping the service on boot and shutdown? > > TIA > > Mike Pacheco Here is my ever so crude shell script to "push" a fwb script to a firewall. I rely upon ssh-agent and key-forwarding to accomplish this. DATESTAMP=`date +%d%b%y-%H%M` mkdir ~/work/firewall/mpcu/fw-mpcu-$DATESTAMP cp ~/work/firewall/mpcu/fw-mpcu.fw ~/work/firewall/mpcu/fw-mpcu-$DATESTAMP/ cp ~/work/firewall/mpcu/fw-mpcu.xml ~/work/firewall/mpcu/fw-mpcu-$DATESTAMP/ scp ~/work/firewall/mpcu/fw-mpcu-$DATESTAMP/fw-mpcu.fw root@10.1.1.254:work/firewall/fw-mpcu.fw.$DATESTAMP ssh root@fw work/firewall/fw-mpcu.fw.$DATESTAMP |