or
Sign in to turn on 1-Click ordering.
 
 
Express Checkout with PayPhrase
What's this? | Create PayPhrase
More Buying Choices
28 used & new from $28.41

Have one to sell? Sell yours here
 
   
Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter
 
 
Tell the Publisher!
I’d like to read this book on Kindle

Don’t have a Kindle? Get your Kindle here.
 
  

Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter (Paperback)

~ Lucian Gheorghe (Author)
Key Phrases: sfq quantum, add dev ethl parent, htb rate, Medium Networks Case Studies, Firewall Prerequisites, Distribution Network (more...)
4.2 out of 5 stars  See all reviews (4 customer reviews)

List Price: $39.99
Price: $31.57 & this item ships for FREE with Super Saver Shipping. Details
You Save: $8.42 (21%)
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.

Want it delivered Wednesday, December 16? Choose One-Day Shipping at checkout. Details
Ordering for Christmas? This item requires additional time to ship. To ensure delivery by December 24, choose FREE Super Saver Shipping at checkout. Read more about holiday shipping.

19 new from $31.57 9 used from $28.41

Frequently Bought Together

Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter + Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort + Linux iptables Pocket Reference
Price For All Three: $74.49

Show availability and shipping details

  • This item: Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter by Lucian Gheorghe

    In Stock.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details

  • Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort by Michael Rash

    In Stock.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details

  • Linux iptables Pocket Reference by Gregor N. Purdy

    In Stock.
    Ships from and sold by Amazon.com.
    Eligible for FREE Super Saver Shipping on orders over $25. Details


Customers Who Bought This Item Also Bought

Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort

Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort

by Michael Rash
5.0 out of 5 stars (10)  $32.97
Linux iptables Pocket Reference

Linux iptables Pocket Reference

by Gregor N. Purdy
4.6 out of 5 stars (5)  $9.95
Linux Firewalls (3rd Edition)

Linux Firewalls (3rd Edition)

by Steve Suehring
4.4 out of 5 stars (36)  $37.11
OpenVPN: Building and Integrating Virtual Private Networks: Learn how to build secure VPNs using this powerful Open Source application

OpenVPN: Building and Integrating Virtual Private Networks: Learn how to build secure VPNs using this powerful Open Source application

by Markus Feilner
2.8 out of 5 stars (6)  $46.84
Linux Networking Cookbook

Linux Networking Cookbook

by Carla Schroder
4.6 out of 5 stars (9)  $29.69
Explore similar items

Editorial Reviews

Product Description

Learn how to secure your system and implement QoS using real-world scenarios for networks of all sizes
  • Implementing Packet filtering, NAT, bandwidth shaping, packet prioritization using netfilter/iptables, iproute2, Class Based Queuing (CBQ) and Hierarchical Token Bucket (HTB)
  • Designing and implementing 5 real-world firewalls and QoS scenarios ranging from small SOHO offices to a large scale ISP network that spans many cities
  • Building intelligent networks by marking, queuing, and prioritizing different types of traffic

In Detail

Firewalls are used to protect your network from the outside world. Using a Linux firewall, you can do a lot more than just filtering packets. This book shows you how to implement Linux firewalls and Quality of Service using practical examples from very small to very large networks.

After giving us a background of network security, the book moves on to explain the basic technologies we will work with, namely netfilter, iproute2, NAT and l7-filter. These form the crux of building Linux firewalls and QOS. The later part of the book covers 5 real-world networks for which we design the security policies, build the firewall, setup the script, and verify our installation. Providing only necessary theoretical background, the book takes a practical approach, presenting case studies and plenty of illustrative examples.

Approach

The author draws on his experience to offer the reader valuable advice on the best practices. Providing only necessary theoretical background, the book takes a practical approach, presenting case studies and plenty of illustrative examples.

Who this book is written for?

This book is aimed at Linux Network administrators<!--[if !supportAnnotations]--> with some understanding of Linux security threats and issues, or any one interested in securing their systems behind a firewall. Basic knowledge of Linux is presumed but other than that this book shows you how to do the rest, from configuring your system to dealing with security breaches.



About the Author

Lucian Gheorghe

Lucian Gheorghe has just joined the Global NOC of Interoute, Europe's largest voice and data network provider. Before Interoute, he was working as a senior network engineer for Globtel Internet, a significant Internet and Telephony Services Provider to the Romanian market He has been working with Linux for more than 8 years putting a strong accent on security for protecting vital data from hackers and ensuring good quality services for internet customers. Moving to VoIP services he had to focus even more on security as sensitive billing data is most often stored on servers with public IP addresses. He has been studying QoS implementations on Linux to build different types of services for IP customers and also to deliver good quality for them and for VoIP over the public internet. Lucian has also been programming with Perl, PHP and Smarty for over 5 years mostly developing in-house management interfaces for IP and VoIP services.


Product Details


Inside This Book (learn more)

What Do Customers Ultimately Buy After Viewing This Item?

Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter
49% buy the item featured on this page:
Designing and Implementing Linux Firewalls with QoS using netfilter, iproute2, NAT and L7-filter 4.2 out of 5 stars (4)
$31.57
Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort
19% buy
Linux Firewalls: Attack Detection and Response with iptables, psad, and fwsnort 5.0 out of 5 stars (10)
$32.97
Linux iptables Pocket Reference
18% buy
Linux iptables Pocket Reference 4.6 out of 5 stars (5)
$9.95
Linux Firewalls (3rd Edition)
8% buy
Linux Firewalls (3rd Edition) 4.4 out of 5 stars (36)
$37.11

Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
 
(3)
(1)

Your tags: Add your first tag
 

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

4 Reviews
5 star:
 (2)
4 star:
 (1)
3 star:
 (1)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.2 out of 5 stars (4 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
3 of 3 people found the following review helpful:
5.0 out of 5 stars Very good book, October 22, 2007
If you like opensource, QoS, Firewalls... this book would be what you need.

If you are netadmin, sysadmin or you are an IT guy and learn this book, you can limit p2p/bittorrent traffic, guarantee bandwith for some services like http, ftp, voip, etc. (QoS), you can protect your network with firewalls.

First in chapter 1 we learn about Networking Fundamentals, then in chapter 2, about Security Threats in every OSI layer. After that we are ready to learn about basis of netfilter and iproute (Firewall and QoS).

In next chapters, show us how to do layer 7 filtering, practical QoS and more advanced things. Then we apply this knowledge in a very practical serie of scenerios that come later in the book.

Very good book, I recomend this to you.
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
1 of 1 people found the following review helpful:
3.0 out of 5 stars Disappointing, April 20, 2009
For some this might be a great book. For me, I found the title misleading. I was mainly interested in the QoS aspect as there are already excellent books available on firewalling and NAT.

The QoS seemed to be mostly an afterthought. The QoS policies utilized were tailored to the example networks but there was no discussion of generic QoS capabilities.

The biggest gripe though, is that there was Zero coverage of DSCP and/or 802.1q packet tagging. This book considers queue scheduling based on netfilter or L7-filter to be all that exists as far as QoS is concerned. If you want treatment of DSCP or 802.1p look elsewhere.

P.S. This book is cookbook format. Don't expect to learn the intricate details. It is not a bad book if that is what you are looking for but if you want a more "textbook" style book with complete coverage you will be disappointed.
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
5.0 out of 5 stars Easy to understand newbies inclusive, August 26, 2009
It is very well written

You will learn about NAT and filtering. Maybe you will need read more about QoS, but like introduction it is fine.

Excellent book. It shows you about small-medium-large networks configurations.

Regards,
Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews

4.0 out of 5 stars Pretty good book
Although I am an experienced Linux user and do some Admin, I'm on my current project developing a linux embedded system that will be a router. Read more
Published on January 11, 2007 by Robert Lazarski

Only search this product's reviews



Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   



So You'd Like to...


Product Information from the Amapedia Community

Beta (What's this?)


Look for Similar Items by Category


Look for Similar Items by Subject

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.


Your Recent History

 (What's this?)

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.