[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: Portsentry and iptables



Bill Johnson wrote:

I am running RH 7.1, and have iptables running via Firestarter.   I also
have Portsentry running.  Is there any reason why I need Portsentry?  I
ask because it is eating a huge percentage of CPU, and spewing out tons of
messages.  With iptables in place, is it giving me any extra protection or
is it just redundant?

Thanks in advance for any advice.

Bill
_____________________________

There is a multi-legged creature crawling on your shoulder.




_______________________________________________ Redhat-list mailing list Redhat-list redhat com https://listman.redhat.com/mailman/listinfo/redhat-list

IPtables and Portsentry serve slightly different purposes.
IPtables is used for firewalling, routing, packet filtering and a lot other purposes.
Portsentry is used for detecting port scanning and for denying access to IPs from which port scanning has been tried.
If you have firewalled all your ports successfully using IPtables and if there are no holes in your firewall then I guess you can do away with Portsentry.


-RKG







[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]