(OLDER) <- More Stuff -> (NEWER) (NEWEST)
Kerio Reseller
Printer Friendly Version

Linux Firewalls


2007/10/31

Index by Subject

  • 9781593271411
  • Prentice Hall
  • 9780132198576

graphic of book cover Order (or just read more about) Linux Firewalls  from Amazon.com


Hate these ads?

Although the introduction says "This book assumes some familiarity with TCP/IP networking concepts", it actually requires a pretty fair familiarity. Do not make the mistake of assuming that this is some cookie cutter approach that's going to teach you a bit about iptables and give you some scripts you can slap into place and forget. There are books that do that, but this isn't one.

The subtitle is "Attack Detection and Response with iptables, psad and fwsnort. Michael Rash is the author of psad, fwknop, and fwsnort among other things, so you can trust he knows what he's talking about here.

This is much more about learning how attackers try to get in and developing the countermeasures to keep them out. As everyone keeps reminding you, security is a journey, not a destination: you never get to "secure", you just work at it incessantly.

As such, this is a good book - I'm not sure it's a "great book" as the foreword proclaims, but then I'm probably too stingy with my superlatives. It's also possible that I'm simply not well versed enough in this area to appreciate greatness when it falls into my grubby little hands.

Nevertheless, I enjoyed this, and if you do know enough about networking to do a bit more than set your box to "Obtain an IP address automatically", you might enjoy it also. Michael Rash is the developer of the Dragon IDS and you'll find his website at http://www.cipherdyne.org/.

Video at http://www.youtube.com/watch?v=aDdq0u5xIME


Technorati tags:

Comments /Books/linux_firealls.html


Thu Nov 1 13:55:29 2007: Subject:   BigDumbDinosaur
It's interesting you reviewed this book, as I've yet to find anything about iptables that is worth the paper on which it is printed. What I know about iptables was gleaned from a painful discovery process, not by consulting some well-written tome (there aren't any on the subject).

Unfortunately, in the world of Linux, crappy documentation is the norm. For all the work and talent that has been applied to the OS itself, I'm amazed at how poorly it has been documented. Many man or info pages are an incomplete mess or are entirely missing. In some cases, man pages are obviously the product of someone who far more an expert at writing code than English prose. This whole situation is ironic, given that RTFM is often the response given to a newbie by Linux veterans. How do we expect anyone to RTFM when there isn't anything to read or what is available is incomplete?



Add your comments

cartoon
Forget the expense of flying to New England. Forget hotel and meals costs.
Installation and light training Boston and New England


Enter your email address for automatic notification of new posts here
(be sure to whitelist 'feedburner.com' if you use spam filtering)

Or use any RSS reader

Delivered by FeedBurner





Views for this page
Today This Week This Month This Year  Overall
16361,392 2,655

Have you tried Searching this site?

Unix/Linux/Mac OS X support by phone, email or on-site: Support Rates

This is a Unix/Linux resource website. It contains technical articles about Unix, Linux and general computing related subjects, opinion, news, help files, how-to's, tutorials and more. We appreciate comments and article submissions.

Publishing your articles here

pavatar.jpg
More:
       - Reviews
       - Books
       - Linux
       - Unix
       - Security




Unix/Linux Consultants

Your ad here - $24.00 yearly!

http://www.cleverminds.net Need expert advice? Want a second opinion? CleverMinds is a one-stop-shop for a wide range of technology solutions. We support Unix, Linux, SCO as well as CMS, ecom, blogs, podcasts, search engines consulting and more. Contact us at web2.0@cleverminds.net 0r (617) 894-1282


http://www.vss3.com SCO/Caldera OpenServer, Unixware & Linux. Tarantella & Non-stop Clustering


http://www.loch-raven.com/Loch Raven provides consulting services for Linux, UNIX, SCO OpenServer, SCO UnixWare, AIX, Solaris and FreeBSD systems. Services include: System administration, Backup and Disaster Recovery planning and implementation, Custom Shell Scripting, System Recovery, Remote Administration, Secure Remote Access configuration, Troubleshooting, System Migration and Windows/Linux/Unix integration with Samba. Loch Raven also provides web site hosting, solutions, and consulting along with Joomla CMS.







Coming Attractions

My Favorites

Change Congress


Related Posts