firewall\security issue

hey there guys,
i hope u all doing great.

i have two questions and thought that anyone here could have the answers.

first things first,
i want to make firewall accept a range of ports (say 8000:9000) because im using mpd process manager to make some parallel processing, does anyone know the command that satisfy this?

the second thing is,
when i open a range of ports like that, it would put my system at risk if some bad guys somehow identifies this range, is there is anything that solves that matter(i.e. makes the firewall monitor the packet, if its an mpd accept if not drop)

ps: im not an expert firewaller :slight_smile:

thanks
hatem

Use this guide in order to forward the ports.

You can also configure the firewall to log the dropped and accepted packets using YAST.

Best regards,
Greg

thank u for replying,

but i wanted a CLI command

Use this thread as a reference.
How to open firewall ports without yast

I’m sure You can figure it out yourself.

Best regards,
Greg

On Mon March 7 2011 07:36 am, suseTOMA wrote:

>
> thank u for replying,
>
> but i wanted a CLI command
>
>
You can run YaST (ncurses) from the CLI. You want YaST -> Security and
Users -> Allowed Services -> Advanced You can enter a range as 8000:9000 for
TCP, RPC and or UDP.

To navigate ncurses use <tab>, <arrow>, <ALT><Value> etc. Directions are on
each page.

It is also possible to edit (as root) /etc/sysconfig or from
YaST ->System-> /etc/sysconfig Editor.

P. V.
“We’re all in this together, I’m pulling for you.” Red Green