fedora-devel-list@redhat.com
[Top] [All Lists]

Re: Services automaticly change firewall rules to open access to themse

Subject: Re: Services automaticly change firewall rules to open access to themselfs.
From: "Nicolas Mailhot"
Date: Wed, 5 Sep 2007 11:30:31 +0200 CEST
Le Mer 5 septembre 2007 10:32, Nigel Metheringham a Ãcrit :
> How about each service dropping a config snippet (as a separate file)
> into something like /etc/sysconfig/service-firewall-rules and having
> a setting on the firewall config GUI which allowed these to be
> included in [or not].
>
> You could also provide an appropriately rich environment setup to
> allow all the standard requirements of basic firewall rules (ie
> interface name/addr etc).
>
> It would obviously take work to get this infrastructure in place.

In an handwaved perfect word, service-firewall-rules would display a
graph of the current firewall network ruleset (showing the packet flow
through blocks of rules), and services would just dump new blocks in
this graph that'd be grayed out till activated by the admin.

This is something like a SoC project though.

Regards,

-- 
Nicolas Mailhot


-- 
fedora-devel-list mailing list
fedora-devel-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/fedora-devel-list

<Prev in Thread] Current Thread [Next in Thread>