[Discuss] Tutorials in IPTABLES

John Tag hart jean.philippe.taggart at gmail.com
Sun Aug 28 18:18:06 PDT 2016


Hello Gerry, 

I didn't know it was derogatory. I apologize.I always thought it as a guru, someone with complete command of Linux. (Usually proportional to the size of the beard)

😅

Sent from my iPhone

> On Aug 28, 2016, at 1:37 PM, Gerald Justice <justice.gerald at gmail.com> wrote:
> 
> Hey Jean,
> 
> "Unix beard?" As in: http://dilbert.com/search_results?terms=get+yourself+a+better+computer
> 
> My experience is quite broad since I've been at this for a while.  Mostly infrastructure stuff, networking (mostly Cisco switches and routers and even terminal servers), firewalls (homemade using Linux w iptables), virtualization (VMware and Xen), file service (NetApp and unix-based NFS), sysadmin (SunOS, Other BSD flavours, Solaris, Various Linux but mainly RedHat (was Certified by RedHat way back for the first 7.2)).  I built a remote console system so virtually all our non-windows systems could be remotely managed effectively for lights out management especially for after-hours emergencies.  Not so much of a programmer now (used to know C and Unix sys calls) but have written many scripts: bash, csh, awk, expect.
> 
> Presently learning how to do enterprise management of Mac OS X (in a Windows environment).
> 
> Thanks,
> 
> Gerry
> 
> 
>> On Fri, Aug 26, 2016 at 2:26 PM, John Tag hart <jean.philippe.taggart at gmail.com> wrote:
>> Hello justice, 
>> 
>> yes I solved it both with chained vm's forwarded and by externalizing to a simple 1u I found a couple of tutorials that were helpful. I've also implemented a VPN round robin in the hardware box that lets me script out what country and exit node. Fun stuff!
>> 
>> I do however value having "UNIX beards" on tap. What are your areas of expertise? 
>> 
>> Jean
>> 
>> 
>> 
>> Sent from my iPhone
>> 
>>> On Aug 26, 2016, at 1:06 PM, Gerald Justice <justice.gerald at gmail.com> wrote:
>>> 
>>> Bonjour Jean,
>>> 
>>> Did you ever resolve this?
>>> 
>>> I have considerable experience with iptables for firewalls though I'm not sure that I'm the best to present a tutorial.
>>> 
>>> As Lionel suggested, some basic debugging often provides clarification.
>>> 
>>> Merci,
>>> 
>>> Gerry
>>> 
>>> 
>>> 
>>>> On Mon, Jun 20, 2016 at 5:26 PM, Jean Taggart <jean.philippe.taggart at gmail.com> wrote:
>>>> Hello Lionel.
>>>> 
>>>> My weird use case is to chain a virtualbox host only adaptor to another. I’m essentially going from one VM to another. The second vm is a debian box that will run openvpn and tunnel out. The goal is that if the Debian VM isn’t running, there’s no internet access.
>>>> 
>>>> I’ve followed a tutorial and I got some of it to work.
>>>> 
>>>> I’m willing to pay for the tutorial. As such knowledge is highly specialized, $100 an hour with a 2 hour minimum sounds amenable.
>>>> 
>>>> Cheers,
>>>> 
>>>> Jean Taggart
>>>> 
>>>> > On Jun 20, 2016, at 4:49 PM, Lionel Widdifield <lwiddif-vlug at nexus.spydernet.ca> wrote:
>>>> >
>>>> > On Mon, Jun 20, 2016 at 02:49:39PM -0700, Jean Taggart wrote:
>>>> >> I'm looking for someone who knows IPTABLES beyond just the basics. I have a weird use case
>>>> >
>>>> > could you define "weird use"  from experience 3 out of 4 times people
>>>> > forget that tcpip is bi-directional when they build firewalls.
>>>> >
>>>> > Getting a tcpdump of the interface usually results in "face meeting palm" repeatedly.
>>>> >
>>>> >
>>>> >
>>>> > --
>>>> >   Lionel Widdifield
>>>> >
>>>> > _______________________________________________
>>>> > Discuss mailing list
>>>> > Discuss at vlug.org
>>>> > http://vlug.org/mailman/listinfo/discuss_vlug.org
>>>> 
>>>> 
>>>> _______________________________________________
>>>> Discuss mailing list
>>>> Discuss at vlug.org
>>>> http://vlug.org/mailman/listinfo/discuss_vlug.org
>>> 
>>> _______________________________________________
>>> Discuss mailing list
>>> Discuss at vlug.org
>>> http://vlug.org/mailman/listinfo/discuss_vlug.org
>> 
>> _______________________________________________
>> Discuss mailing list
>> Discuss at vlug.org
>> http://vlug.org/mailman/listinfo/discuss_vlug.org
> 
> _______________________________________________
> Discuss mailing list
> Discuss at vlug.org
> http://vlug.org/mailman/listinfo/discuss_vlug.org
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://vlug.org/pipermail/discuss_vlug.org/attachments/20160828/25929b83/attachment.html>


More information about the Discuss mailing list