Running Linux and Netfilter on Nokia IP Series Hardware
For information regarding compiling the Linux kernel, see the Kernel HOWTO
Some iptables options, such as limit match and MAC address support, may or may not need to be compiled in, depending on the needs for your particular network configuration.
For more information on serial support in Linux boot loaders, see www.tldp.org/HOWTO/Remote-Serial-Console-HOWTO
Although hardening the Linux installation is beyond the scope of this article, it is important to turn off all unnecessary services. To fully harden the Linux installation install Bastille Linux.
More information on the configuration and administration of iptables can be found in the various Netfilter HOWTOs
Michael Rash works as a senior security engineer for an ASP in Annapolis, Maryland. He holds a Master's in Applied Mathematics from the University of Maryland and has been tinkering with Linux since 1998. In his free time, he enjoys playing the violin for the Prince George's Philharmonic Orchestra.
Special Reports: DevOps
Have projects in development that need help? Have a great development operation in place that can ALWAYS be better? Regardless of where you are in your DevOps process, Linux Journal can help!
With deep focus on Collaborative Development, Continuous Testing and Release & Deployment, we offer here the DEFINITIVE DevOps for Dummies, a mobile Application Development Primer, advice & help from the experts, plus a host of other books, videos, podcasts and more. All free with a quick, one-time registration. Start browsing now...
- The Ubuntu Conspiracy
- A First Look at IBM's New Linux Servers
- Disney's Linux Light Bulbs (Not a "Luxo Jr." Reboot)
- Vigilante Malware
- System Status as SMS Text Messages
- Libreboot on an X60, Part I: the Setup
- Bluetooth Hacks
- Dealing with Boundary Issues
- Vagrant Simplified
- Linux and the Internet of Things