Difference between revisions of "Package:Firewalld"

m (more details)
m (more details)
Line 24: Line 24:
 
###i## rc-update add firewalld
 
###i## rc-update add firewalld
 
###i## rc}}
 
###i## rc}}
 +
 +
{{note|you may need to run rc-service {ip,eb,nf}tables save to enable these services to start}}
 +
 +
=== Binaries ===
 +
;firewall-applet  (gui systray icon)
 +
;firewall-config  (gui configuration menus)
 +
;firewall-offline-cmd -h  (many command line options
 +
;firewall-cmd -h  (command line back end to firewall-config)
 +
;firewalld  (command line firewall daemon control)
  
 
=== gui ===
 
=== gui ===

Revision as of 03:16, May 7, 2015

net-firewall/firewalld


Source Repository:Progress Overlay
Homepage

Summary: A firewall daemon with D-BUS interface providing a dynamic firewall


News

Drobbins

Pre-built kernels!

Funtoo stage3's are now starting to offer pre-built kernels for ease of install. read more....
12 May 2015 by Drobbins
Drobbins

Better Experiences: Ego and Vim

Info on Funtoo's new personality tool called 'ego', and user-focused updates to vim's defaults.
27 April 2015 by Drobbins
Drobbins

How We're Keeping You At the Center of the Funtoo Universe

Read about recent developments that keep you, our users, at the forefront of our focus as Funtoo moves forward.
10 April 2015 by Drobbins
View More News...

Firewalld

Tip

This is a wiki page. To edit it, Create a Funtoo account. Then log in and then click here to edit this page. See our editing guidelines to becoming a wiki-editing pro.

Firewalld is from our fedora friends. Firewalld comes with a gui if the use flag is activated for it. Firewalld is a daemon that is on top of iptables, ebtables, & nftables. Firewalld inserts rules dynamically with out having to restart the kernel layer firewalls, and has interfaces to insert manual iptables, ip6tables, ebtables, and nftables rules. Sshguard can be used along side firewalld to dynamically block attackers. Firewalld is very tightly integrated with NetworkManager.

Warning

firewalld-0.2.x is very buggy under gentoo & funtoo, the init process refuses to stop among other things. it's really bad, pre alpha quality. go to nftables, or iptables now. or use the firewalld-0.3.x series.

Nftables

Iptables

Installation

If you would like an application to configure firewalld, set the gui use flag.

# emerge net-firewall/firewalld


init

# rc-update add consolekit
# rc-update add dbus
# rc-update add iptables
# rc-update add ip6tables
# rc-update add ebtables
# rc-update add nftables
# rc-update add firewalld
# rc


Note

you may need to run rc-service {ip,eb,nf}tables save to enable these services to start

Binaries

firewall-applet (gui systray icon)
firewall-config (gui configuration menus)
firewall-offline-cmd -h (many command line options
firewall-cmd -h (command line back end to firewall-config)
firewalld (command line firewall daemon control)

gui

If the gui is merged in, to load it:

# firewall-applet


External Resources