Sophie

Sophie

distrib > Fedora > 18 > i386 > by-pkgid > 0f3d74e12f904a3d431a7b6139ebab6c > files > 39

system-config-kickstart-2.9.0-1.fc18.noarch.rpm

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<HTML
><HEAD
><TITLE
>Firewall Configuration</TITLE
><META
NAME="GENERATOR"
CONTENT="Modular DocBook HTML Stylesheet Version 1.76b+
"><LINK
REL="HOME"
TITLE="Kickstart Configurator"
HREF="index.html"><LINK
REL="PREVIOUS"
TITLE="Authentication"
HREF="system-config-kickstart-auth.html"><LINK
REL="NEXT"
TITLE="X Configuration"
HREF="system-config-kickstart-xconfig.html"></HEAD><link rel="stylesheet" type="text/css" href="rhdocs-man.css"
><BODY
CLASS="CHAPTER"
BGCOLOR="#FFFFFF"
TEXT="#000000"
LINK="#0000FF"
VLINK="#840084"
ALINK="#0000FF"
><DIV
CLASS="NAVHEADER"
><TABLE
SUMMARY="Header navigation table"
WIDTH="100%"
BORDER="0"
CELLPADDING="0"
CELLSPACING="0"
><TR
><TH
COLSPAN="3"
ALIGN="center"
>Kickstart Configurator</TH
></TR
><TR
><TD
WIDTH="10%"
ALIGN="left"
VALIGN="bottom"
><A
HREF="system-config-kickstart-auth.html"
ACCESSKEY="P"
>Prev</A
></TD
><TD
WIDTH="80%"
ALIGN="center"
VALIGN="bottom"
></TD
><TD
WIDTH="10%"
ALIGN="right"
VALIGN="bottom"
><A
HREF="system-config-kickstart-xconfig.html"
ACCESSKEY="N"
>Next</A
></TD
></TR
></TABLE
><HR
ALIGN="LEFT"
WIDTH="100%"></DIV
><DIV
CLASS="CHAPTER"
><H1
><A
NAME="REDHAT-CONFIG-KICKSTART-FIREWALL"
></A
>Chapter 8. Firewall Configuration</H1
><P
>	The <B
CLASS="GUILABEL"
>Firewall Configuration</B
> window is similar to the
	screen in the installation program and the
	<B
CLASS="APPLICATION"
>Security Level Configuration Tool</B
>.
      </P
><DIV
CLASS="FIGURE"
><A
NAME="REDHAT-CONFIG-KICKSTART-FIREWALL-FIG"
></A
><DIV
CLASS="MEDIAOBJECT"
><P
><IMG
SRC="./figs/ksconfig-firewall.png"></P
></DIV
><P
><B
>Figure 8-1. Firewall Configuration</B
></P
></DIV

<P
>	If <B
CLASS="GUILABEL"
>Disable firewall</B
> is selected, the system allows
	complete access to any active services and ports. No connections to the
	system are refused or denied.
      </P
><P
>	Selecting <B
CLASS="GUILABEL"
>Enable firewall</B
> configures the system to
	reject incoming connections that are not in response to outbound
	requests, such as DNS replies or DHCP requests. If access to services
	running on this machine is needed, you can choose to allow specific
	services through the firewall.</P>
<P>
Selecting <B CLASS="GUILABEL">SELinux Active</B> sets SELinux to enabled
and enforcing.  Selecting <B CLASS="GUILABEL">SELinux Warn</B> sets
SELinux to enabled, but errors are logged instead of refusing to allow
programs to run.  Selecting <B CLASS="GUILABEL">SELinux Disabled</B>
disables SELinux entirely.
</P>
<P>
Only devices configured in the <B
CLASS="GUILABEL"
>Network
	Configuration</B
> section are listed as available
	<B
CLASS="GUILABEL"
>Trusted devices</B
>. Connections from any devices
	selected in the list are accepted by the system. For example, if
	<B
CLASS="GUILABEL"
>eth1</B
> only receives connections from internal
	system, you might want to allow connections from it.
      </P
><P
>	If a service is selected in the <B
CLASS="GUILABEL"
>Trusted services</B
>
	list, connections for the service are accepted and processed by the
	system.
      </P
><P
>	In the <B
CLASS="GUILABEL"
>Other ports</B
> text field, list any additional
	ports that should be opened for remote access. Use the following format:
	<TT
CLASS="USERINPUT"
><B
>port:protocol</B
></TT
>. For example, to allow IMAP access
	through the firewall, specify <TT
CLASS="USERINPUT"
><B
>imap:tcp</B
></TT
>.  Specify
	numeric ports can also be specified; to allow UDP packets on port 1234
	through the firewall, enter <TT
CLASS="USERINPUT"
><B
>1234:udp</B
></TT
>. To specify
	multiple ports, separate them with commas.
      </P
></DIV
><DIV
CLASS="NAVFOOTER"
><HR
ALIGN="LEFT"
WIDTH="100%"><TABLE
SUMMARY="Footer navigation table"
WIDTH="100%"
BORDER="0"
CELLPADDING="0"
CELLSPACING="0"
><TR
><TD
WIDTH="33%"
ALIGN="left"
VALIGN="top"
><A
HREF="system-config-kickstart-auth.html"
ACCESSKEY="P"
>Prev</A
></TD
><TD
WIDTH="34%"
ALIGN="center"
VALIGN="top"
><A
HREF="index.html"
ACCESSKEY="H"
>Home</A
></TD
><TD
WIDTH="33%"
ALIGN="right"
VALIGN="top"
><A
HREF="system-config-kickstart-xconfig.html"
ACCESSKEY="N"
>Next</A
></TD
></TR
><TR
><TD
WIDTH="33%"
ALIGN="left"
VALIGN="top"
>Authentication</TD
><TD
WIDTH="34%"
ALIGN="center"
VALIGN="top"
>&nbsp;</TD
><TD
WIDTH="33%"
ALIGN="right"
VALIGN="top"
>X Configuration</TD
></TR
></TABLE
></DIV
></BODY
></HTML
>