Security
Security
1. General Networking
vi /etc/sysconfig/network HOSTNAME=cs17v1.localdomain // Hostname
2. Interface Configuration
vi /etc/sysconfig/network-scripts/ifcfg-eth0 BOOTPROTO=static ... IPADDR=192.168.17.130 NETMASK=255.255.255.128 GATEWAY=192.168.17.129 // Boot Protcol (dhcp, static...) // IP Address // Subnet Mask // Default Gateway
3. Name Resolution
vi /etc/hosts 127.0.0.1 cs17v1.localdomain cs17v
vi /etc/resolv.conf nameserver 10.13.2.5 nameserver 10.13.2.7 shutdown -r +0 cat /etc/resolv.conf // Primary DNS Server // Secondary DNS Server
4. Check Connectivity
ping ping ping ping ping ping ping ping 192.168.17.130 192.168.17.129 192.168.17.1 192.168.17.2 192.168.17.3 10.234.1.1 8.8.8.8 www.google.com // // // // // // // // Your IP Address Your Default Gateway Other Subnet's Default Gateway File Server Internal Client Room 106A's Default Gateway Google Google - Test Name Resolution
4. Configure ACLs
gedit /etc/squid/squid.conf
Search for http_access deny all Select http_access deny all and modify to read:
acl INTERNAL src 192.168.17.0/24 acl BAD_DOMAINS dstdom_regex -i /etc/squid/blacklist http_access deny BAD_DOMAINS http_access allow INTERNAL http_access allow localhost http_access deny all
5. Restart Squid
service squid restart