Setting up firewall for dial-ins: How?

Setting up firewall for dial-ins: How?

Post by Christian Vei » Wed, 24 Nov 1993 01:23:36



Hi,

suppose I want to set up a "telecommuting" environment, so that people
with PCs or Macs at home can log into the corporate network.
I can't see any major problems on the client side, but what about the
server side? I'd like the setup reflect that of our companie's connection
to the Internet - there's a firewall that basically acts as a router.
Similarly, I'd like the server to "route" dialins to specific hosts.
Are there any guidelines for such a setup, especially with respect to
security?
I'm also interested in people's opinion on what kind of hardware and
software would be required on the server side, e.g. what kinds of serial
cards, how many dialup-lines per so and so many people, security software
(for instance, there has been a discussion on the TIS firewall toolkit -
could I use it?), and other things I most certainly forgot to mention.

Somebody willing to share his/her experience?

chr

---------------------------------------------------------------------------

Siemens AG, Munich, Germany  |             +49-89-636-44519
---------------------------------------------------------------------------

 
 
 

Setting up firewall for dial-ins: How?

Post by Sandwich Mak » Thu, 25 Nov 1993 04:49:02


"suppose I want to set up a "telecommuting" environment, so that people
"with PCs or Macs at home can log into the corporate network.
"I can't see any major problems on the client side, but what about the
"server side? I'd like the setup reflect that of our companie's connection
"to the Internet - there's a firewall that basically acts as a router.

i remember a callback pkg - some years ago - that when you logged on
from a dialin, would hang up and dial you back at a predetermined
number.  with caller-id, this could easily be expanded to match your
calling number to a list and call that number back if it matches or
log it as a breakin attempt if it doesn't.

unfortunately, i don't remember the name of the pkg...

"Similarly, I'd like the server to "route" dialins to specific hosts.

this would be easy with a callback approach.

[]
--
                although you should be doing something productive
                with your life, you are instead wasting your time
                reading this inane mindless rambling drivel from


 
 
 

Setting up firewall for dial-ins: How?

Post by Tom Bri » Fri, 26 Nov 1993 13:20:09


I recommend reading 'UNIX Security' by O'Reilly & Assoc.  Has a chapter
devoted to the subject of modems...
--
    /|                          Tom Brink

 =(___)=                        Paradise Valley, Arizona
    U ACK!THPTPTPT!

 
 
 

Setting up firewall for dial-ins: How?

Post by Hassanain Kapad » Fri, 26 Nov 1993 15:16:10


I have a question regarding implementation of the proxy software on my
workstation.  To maximise security, I figure the best option would be to
insert 2 ethernet ports on my workstation (yet to be purchased). One
would be connected to the internet and the other to the department ethernet.

The questions is - what do I need to do to the proxy software that it
recognises both interfaces.  Also, can the proxy software be configured
to allow/deny to certain IP interfaces only (like filters on routers), etc?

H.kapadia

--
------------------------------------------------------------------------------
Computer Aided Engineering Network, University of Michigan, Ann Arbor MI 48109  

------------------------------------------------------------------------------

 
 
 

1. Need Help on setting up getty for dial-ins

HELP!!!

I read the serial howto and installed getty_ps, and I cannot get my linux
box to pick up the phone when i dial into it.  Can someone out there who
has done this successfully PLEASE help me.

This is the corresponding line from /etc/inittab:

cua1:unknown:/etc/uugetty ttyS1 19200 vt100

and this is my /etc/default/uugetty.ttyS1:

VERSION=/proc/version
LOGIN=/bin/login
ISSUE=/etc/issue
CLEAR=NO
HANGUP=YES
INIT="" ATZ1\r
WAITFOR=RING
CONNECT="" ATA\r CONNECT \s\A
ALTLINE=cua1
ALTLOCK=cua1
INITLINE=cua1
TIMEOUT=60

I am using the Yggdrasil Summer '94 distribution of linux.

I need help desperately

Thanks,

--
--------------------------------------------------------------------------------
Andrew Liles

finger for PGP 2.6 Public Key

2. two IP's one NIC

3. Problems with dialing out when dial-ins are enabled

4. IPMasq and Quake?

5. PPP dial-ins refused, OSR-5 with net100

6. Doom Music + PAS-16

7. supraexpress modems (28.8) problems w/dial-ins

8. Clock settings for ATI Ultra Plus

9. Can't get dial-ins, anyone?

10. Linux and Dial-ins (?)

11. concurrent ppp dial-ins

12. Remote unix (RS/6000) servers with dial-ins

13. Can ISP detect when dial-ins are 'overloaded' ?