Categories
Ebooks
-
Business and economy
- Bitcoin
- Businesswoman
- Coaching
- Controlling
- E-business
- Economy
- Finances
- Stocks and investments
- Personal competence
- Computer in the office
- Communication and negotiation
- Small company
- Marketing
- Motivation
- Multimedia trainings
- Real estate
- Persuasion and NLP
- Taxes
- Social policy
- Guides
- Presentations
- Leadership
- Public Relation
- Reports, analyses
- Secret
- Social Media
- Sales
- Start-up
- Your career
- Management
- Project management
- Human Resources
-
For children
-
For youth
-
Education
-
Encyclopedias, dictionaries
-
E-press
- Architektura i wnętrza
- Health and Safety
- Biznes i Ekonomia
- Home and garden
- E-business
- Ekonomia i finanse
- Finances
- Personal finance
- Business
- Photography
- Computer science
- HR & Payroll
- For women
- Computers, Excel
- Accounts
- Culture and literature
- Scientific and academic
- Environmental protection
- Opinion-forming
- Education
- Taxes
- Travelling
- Psychology
- Religion
- Agriculture
- Book and press market
- Transport and Spedition
- Healthand beauty
-
History
-
Computer science
- Office applications
- Data bases
- Bioinformatics
- IT business
- CAD/CAM
- Digital Lifestyle
- DTP
- Electronics
- Digital photography
- Computer graphics
- Games
- Hacking
- Hardware
- IT w ekonomii
- Scientific software package
- School textbooks
- Computer basics
- Programming
- Mobile programming
- Internet servers
- Computer networks
- Start-up
- Operational systems
- Artificial intelligence
- Technology for children
- Webmastering
-
Other
-
Foreign languages
-
Culture and art
-
School reading books
-
Literature
- Antology
- Ballade
- Biographies and autobiographies
- For adults
- Dramas
- Diaries, memoirs, letters
- Epic, epopee
- Essay
- Fantasy and science fiction
- Feuilletons
- Work of fiction
- Humour and satire
- Other
- Classical
- Crime fiction
- Non-fiction
- Fiction
- Mity i legendy
- Nobelists
- Novellas
- Moral
- Okultyzm i magia
- Short stories
- Memoirs
- Travelling
- Narrative poetry
- Poetry
- Politics
- Popular science
- Novel
- Historical novel
- Prose
- Adventure
- Journalism, publicism
- Reportage novels
- Romans i literatura obyczajowa
- Sensational
- Thriller, Horror
- Interviews and memoirs
-
Natural sciences
-
Social sciences
-
School textbooks
-
Popular science and academic
- Archeology
- Bibliotekoznawstwo
- Cinema studies
- Philology
- Polish philology
- Philosophy
- Finanse i bankowość
- Geography
- Economy
- Trade. World economy
- History and archeology
- History of art and architecture
- Cultural studies
- Linguistics
- Literary studies
- Logistics
- Maths
- Medicine
- Humanities
- Pedagogy
- Educational aids
- Popular science
- Other
- Psychology
- Sociology
- Theatre studies
- Theology
- Economic theories and teachings
- Transport i spedycja
- Physical education
- Zarządzanie i marketing
-
Guides
-
Game guides
-
Professional and specialist guides
-
Law
- Health and Safety
- History
- Road Code. Driving license
- Law studies
- Healthcare
- General. Compendium of knowledge
- Academic textbooks
- Other
- Construction and local law
- Civil law
- Financial law
- Economic law
- Economic and trade law
- Criminal law
- Criminal law. Criminal offenses. Criminology
- International law
- International law
- Health care law
- Educational law
- Tax law
- Labor and social security law
- Public, constitutional and administrative law
- Family and Guardianship Code
- agricultural law
- Social law, labour law
- European Union law
- Industry
- Agricultural and environmental
- Dictionaries and encyclopedia
- Public procurement
- Management
-
Tourist guides and travel
- Africa
- Albums
- Southern America
- North and Central America
- Australia, New Zealand, Oceania
- Austria
- Asia
- Balkans
- Middle East
- Bulgary
- China
- Croatia
- The Czech Republic
- Denmark
- Egipt
- Estonia
- Europe
- France
- Mountains
- Greece
- Spain
- Holand
- Iceland
- Lithuania
- Latvia
- Mapy, Plany miast, Atlasy
- Mini travel guides
- Germany
- Norway
- Active travelling
- Poland
- Portugal
- Other
- Przewodniki po hotelach i restauracjach
- Russia
- Romania
- Slovakia
- Slovenia
- Switzerland
- Sweden
- World
- Turkey
- Ukraine
- Hungary
- Great Britain
- Italy
-
Psychology
- Philosophy of life
- Kompetencje psychospołeczne
- Interpersonal communication
- Mindfulness
- General
- Persuasion and NLP
- Academic psychology
- Psychology of soul and mind
- Work psychology
- Relacje i związki
- Parenting and children psychology
- Problem solving
- Intellectual growth
- Secret
- Sexapeal
- Seduction
- Appearance and image
- Philosophy of life
-
Religion
-
Sport, fitness, diets
-
Technology and mechanics
Audiobooks
-
Business and economy
- Bitcoin
- Businesswoman
- Coaching
- Controlling
- E-business
- Economy
- Finances
- Stocks and investments
- Personal competence
- Communication and negotiation
- Small company
- Marketing
- Motivation
- Real estate
- Persuasion and NLP
- Taxes
- Social policy
- Guides
- Presentations
- Leadership
- Public Relation
- Secret
- Social Media
- Sales
- Start-up
- Your career
- Management
- Project management
- Human Resources
-
For children
-
For youth
-
Education
-
Encyclopedias, dictionaries
-
E-press
-
History
-
Computer science
-
Other
-
Foreign languages
-
Culture and art
-
School reading books
-
Literature
- Antology
- Ballade
- Biographies and autobiographies
- For adults
- Dramas
- Diaries, memoirs, letters
- Epic, epopee
- Essay
- Fantasy and science fiction
- Feuilletons
- Work of fiction
- Humour and satire
- Other
- Classical
- Crime fiction
- Non-fiction
- Fiction
- Mity i legendy
- Nobelists
- Novellas
- Moral
- Okultyzm i magia
- Short stories
- Memoirs
- Travelling
- Poetry
- Politics
- Popular science
- Novel
- Historical novel
- Prose
- Adventure
- Journalism, publicism
- Reportage novels
- Romans i literatura obyczajowa
- Sensational
- Thriller, Horror
- Interviews and memoirs
-
Natural sciences
-
Social sciences
-
Popular science and academic
-
Guides
-
Professional and specialist guides
-
Law
-
Tourist guides and travel
-
Psychology
- Philosophy of life
- Interpersonal communication
- Mindfulness
- General
- Persuasion and NLP
- Academic psychology
- Psychology of soul and mind
- Work psychology
- Relacje i związki
- Parenting and children psychology
- Problem solving
- Intellectual growth
- Secret
- Sexapeal
- Seduction
- Appearance and image
- Philosophy of life
-
Religion
-
Sport, fitness, diets
-
Technology and mechanics
Videocourses
-
Data bases
-
Big Data
-
Biznes, ekonomia i marketing
-
Cybersecurity
-
Data Science
-
DevOps
-
For children
-
Electronics
-
Graphics/Video/CAX
-
Games
-
Microsoft Office
-
Development tools
-
Programming
-
Personal growth
-
Computer networks
-
Operational systems
-
Software testing
-
Mobile devices
-
UX/UI
-
Web development
-
Management
Podcasts
E-book details
Log in, If you're interested in the contents of the item.

Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT and l7-filter. Learn how to secure your system and implement QoS using real-world scenarios for networks of all sizes
Ebook
Firewalls are used to protect your network from the outside world. Using a Linux firewall, you can do a lot more than just filtering packets. This book shows you how to implement Linux firewalls and Quality of Service using practical examples from very small to very large networks.
After giving us a background of network security, the book moves on to explain the basic technologies we will work with, namely netfilter, iproute2, NAT and l7-filter. These form the crux of building Linux firewalls and QOS. The later part of the book covers 5 real-world networks for which we design the security policies, build the firewall, setup the script, and verify our installation.
Providing only necessary theoretical background, the book takes a practical approach, presenting case studies and plenty of illustrative examples.
After giving us a background of network security, the book moves on to explain the basic technologies we will work with, namely netfilter, iproute2, NAT and l7-filter. These form the crux of building Linux firewalls and QOS. The later part of the book covers 5 real-world networks for which we design the security policies, build the firewall, setup the script, and verify our installation.
Providing only necessary theoretical background, the book takes a practical approach, presenting case studies and plenty of illustrative examples.
- Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT, and L7-filter
- Table of Contents
- Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT, and L7-filter
- Credits
- About the Author
- About the Reviewer
- Preface
- What This Book Covers
- Conventions
- Reader Feedback
- Customer Support
- Downloading the Example Code for the Book
- Errata
- Questions
- 1. Networking Fundamentals
- The OSI Model
- OSI Layer 7: Application
- OSI Layer 6: Presentation
- OSI Layer 5: Session
- OSI Layer 4: Transport
- OSI Layer 3: Network
- OSI Layer 2: Data Link
- OSI Layer 1: Physical
- OSI Functionality Example and Benefits
- The TCP/IP Model
- The TCP/IP Application Layer
- The TCP/IP Transport Layer
- The Transmission Control Protocol (TCP)
- The User Datagram Protocol (UDP)
- The TCP/IP Internet Layer
- The TCP/IP Network Access Layer
- TCP/IP Protocol Suite Summary
- OSI versus TCP/IP
- IP Addressing, IP Subnetting, and IP Supernetting
- Obtaining an IP Address
- IP Classes
- Reserved IP Addresses
- Public and Private IP Addresses
- IP Subnetting
- The Subnet Mask
- Everything Divided in Two
- A Different Approach
- IP Supernetting or CIDR
- How the Internet Works
- Summary
- The OSI Model
- 2. Security Threats
- Layer 1 Security Threats
- Layer 2 Security Threats
- MAC Attacks
- DHCP Attacks
- ARP Attacks
- STP and VLAN-Related Attacks
- Layer 3 Security Threats
- Packet Sniffing
- IP Spoofing
- Routing Protocols Attacks
- ICMP Attacks
- Teardrop Attacks
- Layer 4 Security Threats
- TCP Attacks
- UDP Attacks
- TCP and UDP Port Scan Attacks
- Layer 5, 6, and 7 Security Threats
- BIND Domain Name System (DNS)
- Apache Web Server
- Version Control Systems
- Mail Transport Agents (MTA)
- Simple Network Management Protocol (SNMP)
- Open Secure Sockets Layer (OpenSSL)
- Protect Running ServicesGeneral Discussion
- Summary
- 3. Prerequisites: netfilter and iproute2
- netfilter/iptables
- Iptables Operations
- Filtering Specifications
- Target Specifications
- A Basic Firewall ScriptLinux as a Workstation
- Iptables Operations
- iproute2 and Traffic Control
- Network Configuration: "ip" Tool
- Traffic Control: tc
- Queuing Packets
- Classless Queuing Disciplines (Classless qdiscs)
- Classful Queuing Disciplines
- Queuing Packets
- tc qdisc, tc class, and tc filter
- A Real Example
- Summary
- netfilter/iptables
- 4. NAT and Packet Mangling with iptables
- A Short Introduction to NAT and PAT (NAPT)
- SNAT and Masquerade
- DNAT
- Full NAT (aka Full Cone NAT)
- PAT or NAPT
- NAT Using iptables
- Setting Up the Kernel
- The netfilter nat Table
- SNAT with iptables
- DNAT with iptables
- Transparent Proxy
- Setting Up the Script
- Verifying the Configuration
- A Less Normal Situation: Double NAT
- Packet Mangling with iptables
- The netfilter mangle Table
- Summary
- A Short Introduction to NAT and PAT (NAPT)
- 5. Layer 7 Filtering
- When to Use L7-filter
- How Does L7-filter Work?
- Installing L7-filter
- Applying the Kernel Patch
- Applying the iptables Patch
- Protocol Definitions
- Testing the Installation
- L7-filter Applications
- Filtering Application Data
- Application Bandwidth Limiting
- Accounting with L7-filter
- IPP2P: A P2P Match Option
- Installing IPP2P
- Using IPP2P
- IPP2P versus L7-filter
- Summary
- 6. Small Networks Case Studies
- Linux as SOHO Router
- Setting Up the Network
- Defining the Security Policy
- Building the Firewall
- Setting Up the Firewall Script
- Verifying the Firewall Configuration
- QoSBandwidth Allocation
- The QoS Script
- Verifying the QoS Configuration
- Linux as Router for a Typical Small to Medium Company
- Setting Up the Router
- Defining the Security Policy
- A Few Words on Applications
- Creating the Firewall Rules
- Setting Up the Firewall Script
- QoSBandwidth Allocation
- The QoS Script
- Summary
- Linux as SOHO Router
- 7. Medium Networks Case Studies
- Example 1: A Company with Remote Locations
- The Network
- Building the Network Configuration
- Designing the Firewalls
- Building the Firewalls
- Sites B and C
- Site A
- Headquarters
- Make the Network Intelligent by Adding QoS
- Example 2: A Typical Small ISP
- The Network
- Building the Network Configuration
- Designing and Implementing the Firewalls
- The Intranet Server: 1.2.3.10
- The Wireless Server: 1.2.3.130
- The AAA Server: 1.2.3.1
- The Database Server: 1.2.3.2
- The Email Server: 1.2.3.3
- The Web Server: 1.2.3.4
- A Few Words on the Access Server: 1.2.3.131
- The Core RouterFirst Line of Defense
- QoS for This Network
- QoS on the Wireless Server for Long-Range Wireless Users
- QoS on the Intranet Server for the Internal Departments
- QoS on the Core Router
- Summary
- Example 1: A Company with Remote Locations
- 8. Large Networks Case Studies
- Thinking Large, Thinking Layered Models
- A Real Large Network Example
- A Brief Network Overview
- City-1
- City-2
- City-3 and City-4
- The Core Network Configuration
- Core-2
- Core-1, Core-3, and Core-4
- Security Threats
- Core Routers INPUT Firewalls
- Protecting the Networks behind the Core Routers
- Denial of Service Attacks
- City-1 Firewall for Business-Critical Voice Equipment
- Securing the Voice Network
- QoS Implementation
- Traffic Shaping for Clients
- A Brief Network Overview
- Summary
- Index
- Title: Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT and l7-filter. Learn how to secure your system and implement QoS using real-world scenarios for networks of all sizes
- Author: Lucian Gheorghe
- Original title: Designing and Implementing Linux Firewalls and QoS using netfilter, iproute2, NAT and l7-filter. Learn how to secure your system and implement QoS using real-world scenarios for networks of all sizes
- ISBN: 9781847190512, 9781847190512
- Date of issue: 2006-10-31
- Format: Ebook
- Item ID: e_3b24
- Publisher: Packt Publishing