Showing posts with label How to install IPTables on Linux. Show all posts
Showing posts with label How to install IPTables on Linux. Show all posts

Sunday, May 22, 2011

Continue with How to Install IPTables on Linux

Continue with How to Install IPTables on Linux and still with Inside the Computers, we will continue this post until the rest of this post will end.


We need to install those modules if we use the facility. For example, we don’t need PCMCIA if we use a server to create this IPTables. You can see more information in the directory /usr/src/linux/Documentation/Changes in every your Linux machine.
After all the modules installed properly, do not forget to do the back up to our kernel before we do the modification on it. This step or level is very important because if we has a problem to a modified kernel, we won’t be loose the past kernel because we already back up it. The configuration on LILO or GRUB also we back up to, just in case if there is booting problem to a new kernel.
After all those step is done, we are ready to do the kernel compiling to activate the IPTables facility on the Net filter module. Make sure that we already in the directory /usr/src/linux, or wherever you put the kernel source. We also login as root to the computer that we want do the modification to the kernel. Follow all the instruction on README file on the directory our source kernel until you has the “Make” command.
You can also use the command “make config” or make menuconfig or make xconfig to entering the main menu from kernel arrangement. The safest way to use is make menuconfig or make xconfig, because it can make us to do the kernel modification faster. Because every PC or server is different, so what we need to see in the kernel modification is that we have to activated the network cards, SCSI peripherals, and other peripherals which connected to the network.
After entering inside the arrange menu, activated Net filter facilities and IPTables support by select Networking Options menu, then give * mark on the Network Packet Filtering Menu (Replaces Ipchains). There will be more options appear, then select IP option: Netfilter Configuration. After we go to the inside it, select the IP tables support option (required for filtering/masq/NAT).
Activated this facility by give this symbol ( * ) mark in this option. For other facility, if we are not sure we can make it function as modules only, not installed in to the active kernel. But when some time we want to use it, we don’t have to re-compile this kernel.
Now the arrangement is enough to activated the IPTables facilities. Save the kernel configuration and exit to the prompt page. Then use the make bzImage, make modules, make module install command. Once again, make sure the old kernel configuration is save and list on the scrip boot loader. Then we can reboot the computer and we get the new kernel.
The next step is installing IPTables program which you can download it on the internet. And the installation of this program is very easy and simple, then after we complete all those step, we can use IPTables facilities now.

Saturday, May 21, 2011

HOW TO INSTALL IPTABLES ON LINUX?

The questions how to install IPTables on Linux will explain here by Inside The Computers, and here we are with the explanations.
IPTables is easy to install in your Linux machine. There is two components that you have to pay attention in providing IPTables facility on your computer. First you have to see and know, are this facility ready or not in operating system you used. Or in other words, is there any kernel module to activate this facility? Kernel configuration is one of the important points that you have to check first.

To run this IPTables facility which is so sophisticated and complete, you need at least a linux kernel version 2.4.x or more. Because inside those kernels already been ready, and we just activated it. This kernel version is the absolute thing that we have to pay attention. If the version below 2.4.x, there is might be that IPTables can be run but that not recommended.

IPTables module in kernel, is part of framework Net filter in kernel 2.4.x. This module can give you the ability of filtering and manage from in or out IP packet. Don’t be fool by the abbreviations or acronym the Net filter with IPTables itself. So many of us assume that Net filter is the same with IPTables, but the fact is Net filter is a group of script and programming modules in the kernel level and forming a system. Later this system will do the task around the inside and out packet from and to the network. Those modules inside the Net filter can do so many things to that packet.

Drop it, change the direction, make them in the lineup, or just let them pass. All of those thing can be done by Net filter including the modules. One if that module is IPTables.

In the installation process and activate the IPTables facility, we need other supporting modules that also installed to our computer. Those modules has minimum limited version which can cooperate with IPTables. The supporting modules and minimum version which can activated the IPTables is;
•    GNU C 2.91.66
•    GNU Make 3.77
•    Binutils 2.9.1.0.25
•    Util-linux 2.10o
•    E2fsprogs 1.19
•    Reiserfsporgs 3.x.0b
•    Pcmcia-cs 3.1.21
•    PPP 2.4.0
•    Isdn4k-utils 3.1 pre1
we will continue this post tomorrow with the same topics but full with the pictures (The step of installation)