Recommended Posts

I ditched pfSense, not sure why but it was just rubbish.

Anyway, got an arch linux server setup with iptables and snort, snort is all taken care of and is working via nfq and afpacket DAQs in inline mode...

What I'd like to do, however, is use iptables to block some IPs and ports, before allowing the rest of the data to pass on through to snort and then out another ethernet interface to the server(s).

Only problem is, it requires NAT, and me, iptables and the FORWARD/NAT chain don't seem to get on, I've no idea how to go about doing it :(. Looked around the net and came across various examples, but they're all rubbish quite frankly and require you have internal IPs and specify them directly, etc. whereas I want this server to just drop bad traffic and forward it out another interface, so the servers can still use public IPs.

So I'm quite literally stuck and haven't got a CLUE how to do this, any ideas?

Link to comment
https://www.neowin.net/forum/topic/1075113-iptables-and-snort/
Share on other sites

This topic is now closed to further replies.
  • Posts

    • Brexit was first proposed in 2013, I had no idea Trump had anything to do with it.
    • Microsoft Edge 149.0.4022.96 by Razvan Serea Microsoft Edge is a super fast and secure web browser from Microsoft. It works on almost any device, including PCs, iPhones and Androids. It keeps you safe online, protects your privacy, and lets you browse the web quickly. You can even use it on all your devices and keep your browsing history and favorites synced up. Built on the same technology as Chrome, Microsoft Edge has additional built-in features like Startup boost and Sleeping tabs, which boost your browsing experience with world class performance and speed that are optimized to work best with Windows. Microsoft Edge security and privacy features such as Microsoft Defender SmartScreen, Password Monitor, InPrivate search, and Kids Mode help keep you and your loved ones protected and secure online. Microsoft Edge has features to keep both you and your family protected. Enable content filters and access activity reports with your Microsoft Family Safety account and experience a kid-friendly web with Kids Mode. The new Microsoft Edge is now compatible with your favorite extensions, so it’s easy to personalize your browsing experience. Microsoft Edge 149.0.4022.96 changelog: Fixed various bugs, new policy update and performance issues. Stable channel security updates are listed here. New policies - RestrictBackgroundFetchFromServiceWorkerEnabled - Restrict Background Fetch API when called from a Service Worker Download: Microsoft Edge (64-bit) | 193.0 MB (Freeware) Download: Microsoft Edge (32-bit) | 170.0 MB Download: Microsoft Edge (ARM64) | 188.0 MB View: Microsoft Edge Website | Release History Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • 'The Trump administration doesn't want you to use OpenAI's GPT-5.6 without its approval' Of course it does! Can they not keep their grubby little hands out of anything?
    • AI Labs and specially it's investors, might be super happy to see that government it's impeding them to sell their own stuff worldwide and make more money.
    • Hi everyone. Here is the background. A home user who has nothing to do overtly with AI in any way and pretty much is the non gamer, stereotypical FB and cats user. If I was looking at a new laptop would this be succifient in your expert opinions? Ryzen 7-7730U/16GB/256GB SSD
  • Recent Achievements

    • One Year In
      bernmeister earned a badge
      One Year In
    • Week One Done
      Scoobystu earned a badge
      Week One Done
    • Week One Done
      tuben earned a badge
      Week One Done
    • First Post
      OffsetAbs earned a badge
      First Post
    • Reacting Well
      OffsetAbs earned a badge
      Reacting Well
  • Popular Contributors

    1. 1
      +primortal
      459
    2. 2
      +Edouard
      213
    3. 3
      PsYcHoKiLLa
      157
    4. 4
      Steven P.
      73
    5. 5
      FloatingFatMan
      71
  • Tell a friend

    Love Neowin? Tell a friend!