I am the ghost of groovymother.com. Woooooo!

This is an old page from Rod Begbie's blog.

It only exists in an attempt to prevent linkrot. No new content will be added to this site, and links and images are liable to be broken. Check out begbie.com to find where I'm posting stuff these days.

Firewallin'

February 6, 2005

Firewallin’

A thoroughly satisfying weekend of hackery—I finally got my home firewall set-up the way I wanted.

Some background: My ADSL is provided by the fantastically forward-thinking and geek-friendly ISP Speakeasy.net. They’re not cheap, but they have smart policies. As an example, I get four static IP addresses for my home network.

In the past I’ve used these by sticking my PCs directly onto the public internet. This has meant that I’ve needed to run software firewalls on each computer, all with different rules and ways of configuring them (Zone Alarm on Windows, Brickhouse on OSX and Firewall Builder on my Linux boxen.) This has been a pain.

But yesterday morning, a brainwave struck me: I have a Linksys WRT54G wireless router providing my wireless network. It’s powered by Linux, which means that it’s relatively easy to hack and make more powerful. Surely that could be my firewall.

So a toast, then, to the geniuses behind OpenWRT, a teensy little Linux distribution which sits on the router giving you oodles of room to build. Combined with the Shoreline Firewall running in Proxy ARP mode, I’ve been able to set everything up exactly as I’ve wanted to do for years.

I have to confess that I’ve frightened Joy this weekend, due to my occasional schoolgirl-ish giggles as I hit WhatIsMyIP.com and get the result I hoped for, or see Joy’s shared music pop up in my iTunes for the first time ever. But that’s the price she pays for marrying a complete unashamed spod.


Comments

On Tuesday, February 8, 2005, zabeth commented:

None of that made any sense. At all.

On Wednesday, February 9, 2005, Rod commented:

It's a shame you say that, Zabeth. If you crack the code, and go to the location specified, you'll find a $1,000,000 prize.

On Sunday, February 20, 2005, Michael Paul commented:

I've got the same router and have been debating on some thirdparty firmware. There is also the wrt linux install that is purely a ram install.

Linux
<a href="http://www.batbox.org/wrt54g-linux.html">http://www.batbox.org/wrt54g-linux.html</a>
Snort
<a href="http://www.batbox.org/wrt54g.html">http://www.batbox.org/wrt54g.html</a>

The Openwrt project sounds a lot more insteresting. Actually I like the Linksys firmware but the logs could be a little more informative. Thats what I'm looking for right now is a kind of router log besides the firewall log and analyzer that I have already. Also run Airsnare for intrusion detection on the network. PRetty cool freebie..

<a href="http://home.comcast.net/~jay.deboer/airsnare/">http://home.comcast.net/~jay.deboer/airsnare/</a>

Did a little beta testing for them. It was fun.


About This Site

This is an archive of groovmother.com, the old blog run by Rod Begbie — A Scottish geek who lives in San Francisco, CA.

I'm the co-founder of Sōsh, your handy-dandy guide for things to do in San Francisco this weekend.