Michael Rash - Ëèíóêñ Firewalls

Michael Rash System administrators need to stay ahead of new
security vulnerabilities that leave their networks exposed
every day. A firewall and an intrusion detection system
(IDS) are two important weapons in that fight, enabling
you to proactively deny access and monitor network
traffic for signs of an attack.
Ëèíóêñ Firewalls discusses the technical details of the
iptables firewall and the Netfilter framework that are
built into the Ëèíóêñ kernel, and it explains how they
provide strong filtering, Network Address Translation
(NAT), state tracking, and application layer inspection
capabilities that rival many commercial tools. You’ll
learn how to deploy iptables as an IDS with psad and
fwsnort and how to build a strong, passive authentica-
tion layer around iptables with fwknop.