Lost Password? No account yet? Sign up! Why bother?
  • Narrow screen resolution
  • Wide screen resolution
  • Auto width resolution
  • Increase font size
  • Decrease font size
  • Default font size

SmallNetBuilder - Small Network Help

  
Home arrow LAN & WAN arrow LAN & WAN Reviews arrow m0n0wall Firewall V1.0 - Part 2
m0n0wall Firewall V1.0 - Part 2 Print E-mail
David Cook   
August 13, 2004

Basic m0n0wall Configuration

m0n0wall has a very simple, but easy to use Web interface for configuration. The screen shots and examples that follow are based on m0n0wall on the Soekris net4501, but are applicable to all the m0n0wall images.

Enter the m0n0wall IP address into the Address box of your web browser and you will be prompted for a Userid and Password. Enter the defaults are admin and mono (both lowercase, no numbers) and you'll be then taken straight to the Status page (Figure 1).

m0n0wall Status page

Figure 1: m0n0wall Status page

The web GUI has a simple layout with all configuration options and features grouped and listed in a pane down the left side of the page and the details of the selected option are displayed in a large pane on the right side of the page.

As with most firewalls, m0n0wall offers a certain amount of security in its default configuration. The important defaults are:

Security

  • The WAN interface is configured to get its IP configuration by DHCP. 
  • Traffic entering on the LAN interface is allowed to pass to any other interface, WAN and optional interfaces.
  • Outbound NAT is enabled; all outbound traffic passing through the WAN interface appears as if it originated from the WAN IP address.
  • Inbound traffic entering on the WAN interface is blocked.

Administration

  • Web administration is allowed on the LAN interface IP (default 192.168.1.1/24) on port 80 (http).
  • The DHCP service is enabled on the LAN interface so that PCs are correctly configured with an IP address in the 192.168.1.100 - 199 range. The DNS forwarder service is enabled allowing PCs connecting to the LAN interface to use the LAN IP address as a DNS server. Queries are forwarded to the DNS servers, statically configured or obtained by DHCP / PPP, on the WAN interface.
  • The firewall's time zone is set to Etc/UTC and synchronises its internal clock every 5 hours with one of the time servers at pool.ntp.org 1 .

Under most circumstances, this is enough to give a small network of PCs and other Ethernet devices using TCP/IP protected access to the Internet. All other features and services are disabled.

1 pool.ntp.org is a voluntary project providing public Network Time Servers. The project uses 'Round Robin' DNS to spread the load of time requests over a large number of servers, currently 188.



Tags: firewall, Linux, m0n0wall, open source,

Related Articles:

How To: Using m0n0wall to create a Wireless Captive Portal
PC Engines Wireless Router Application Platform (WRAP) reviewed
m0n0wall Firewall V1.0 - Part 1
Slideshow - Linksys RVS4000
Taming Your Network's Bandwidth Hogs - Part 1
 

Most Read

 
 

Over At The Forums

HELP! How to salvage data from a failed RAID1 setup (Hammer MyShare)
Hello all, Situation: I purchased a 1 TB Hammer MyShare NAS *almost* a year ago and for some reason, the unit refuses to power on as of...

Sphere Widget Mambot
At sphere.com you can find a link to a Sphere Widget implementation for Joomla sites. That link leads here, but even with an account I...

Small office equipment suggestions.
We recently had our inefficient and barely functional network gear blow up in a thunderstorm and now my boss is asking me for a proposal...

home network shared with neighbor
I have a crazy networking idea that I have no idea how to implement. I currently have a few boxes behind a switch attached...

What do I need for office router/switch
I don't know where to put this so I will start here. I have a host computer running XP that we keep Quickbooks Pro/Premier on...

Slideshows

QNAP TS-509 Pro D-Link DNS-343 4-Bay Network Storage Enclosure Thecus N3200 RAID 5 NAS D-Link DIR-628 RangeBooster N Dual Band Router Adtran NetVanta 3120 Buffalo LinkStation Mini More

Win This!

Enter to Win!

You could win a Trendnet TE100-MP2U 2-Port Multi-Function Print Server and IOGEAR GUIP201 USB Net ShareStation

Learn How!

 

Ldr:0.00171208381653, Rct:0.005774974823, Sky:0.00782704353333, Tlink:0.607442140579, TopPG:0.60754108429, GQV:0.60772395134 seconds to load.