LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-06-2014, 06:02 AM   #1
yzT!
Member
 
Registered: Jan 2013
Distribution: Debian
Posts: 168

Rep: Reputation: 2
Allow outgoing nmap traffic in iptables


Is it possible to allow Nmap through iptables as my user?

I'm aware of the owner module, but I don't want to create another user just to use nmap. I want to do it as myself, whilst also restricting the outgoing traffic. Otherwise I need to set the OUTPUT chain to ACCEPT, which is not so security compliant.

edit: I end up creating a new user specific for security tasks, not just nmap, so I'm using the owner module now

Last edited by yzT!; 07-06-2014 at 01:21 PM.
 
Old 07-06-2014, 04:23 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
OK. Good it worked for you. Off of the 0-reply list now.

//FWIW: https://secwiki.org/w/Running_nmap_a...rivileged_user might be of interest as well (not firewall-related though).
 
Old 07-06-2014, 05:36 PM   #3
yzT!
Member
 
Registered: Jan 2013
Distribution: Debian
Posts: 168

Original Poster
Rep: Reputation: 2
actually, if you want to use some scans like sS that should be done as well, otherwise sudo must be used, hence, running nmap as root and not the user.

Last edited by yzT!; 07-07-2014 at 02:57 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] allows outgoing traffic for two mac address with iptables tastiero Linux - Newbie 3 03-26-2012 04:11 AM
iptables/Squid with outgoing traffic NoTeef Linux - Networking 3 06-27-2011 07:29 AM
IPtables: Route outgoing traffic from internal host to only go a internet interface predatorz Linux - Networking 4 11-24-2010 09:05 AM
IPTables How to make outgoing traffic show from a different IP address codenjanod Linux - Networking 4 11-05-2009 01:10 PM
Iptables - Redirecting Outgoing Traffic Frankablu Linux - Networking 1 06-12-2005 01:18 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:40 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration