Bad Penguin Logo
Advertisement

DDNS Firewall Holes PDF Print E-mail
 

By TuxInvader, on 14-07-2006 22:48

Views : 1366

Published in : Technology, Linux

One method I've used for accessing my home box from the interweb is to use a dynamic DNS account. I have a script that is run from cron that does a lookup on a certain hostname and updates an iptables chain whenever the IP changes. 
 
 
I don't need to leave SSH open, I just carry the username/password for the ddns account and update it whenever I need access from somewhere. Within a few minutes a hole is opened through the firewall and I can log in.
 
The script allows you to add multiple hostnames and multiple ports, you should be able to easily modify it to suit your requirements.
 
It's a good idea to reset the IP on the dns account to a trusted host when you've finished Wink
 
You will need to create a NetFilter chain with a return rule at the end and jump into from the INPUT chain. Once that's done ddnsholes will do the rest.
 
Download the shell script ==> ddnsholes.sh
 
Copyright: Mark Boddington 2005 
 
If you want a more secure method using GPG protected email take a look at GPGSesame
 

Last update : 20-10-2006 18:38

   

Users' Comments  
 


Add your comment
Name
E-mail
Title  
 
Comment
 
Available characters: 600
 
  This image contains a scrambled text, it is using a combination of colors, font size, background, angle in order to disallow computer to automate reading. You will have to reproduce it to post on my homepage
Enter what you see:

   
   

No comment posted

< Prev