KEMBAR78
IPCop Configuration Guide | PDF | Proxy Server | Domain Name System
0% found this document useful (0 votes)
971 views20 pages

IPCop Configuration Guide

IPCop is a Linux-based firewall/router operating system. It provides firewall, VPN, DHCP, proxy, and traffic shaping capabilities through a web-based interface. The document outlines the main sections and configuration options available in the IPCop web interface, including system settings, network services, firewall rules, backups, updates, and remote administration options.
Copyright
© Attribution Non-Commercial (BY-NC)
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
971 views20 pages

IPCop Configuration Guide

IPCop is a Linux-based firewall/router operating system. It provides firewall, VPN, DHCP, proxy, and traffic shaping capabilities through a web-based interface. The document outlines the main sections and configuration options available in the IPCop web interface, including system settings, network services, firewall rules, backups, updates, and remote administration options.
Copyright
© Attribution Non-Commercial (BY-NC)
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 20

IPCop

( 2) !" # $ %& '


IPCop ( )*( )+ & " & , -# .!" # & / .$ #*
4 Interface
# 0 ' " 0 !)+ ./ . . (# # . 0 !Remote
$ & IPCop , /$ SSH * WinSCP & 0 ! Config , * Browser
* $ * & IPCop &
# (0 & # % & ' IPCop ) ' &

* * . http://ipcop:81 * http://xxx.xxx.xxx.xxx:81
IPCop . ' $1 * 2 % )* ) ./ .* 2
- System $1 0 %* & 2 IPCop
- Status $1 0 0 . . 0! 2 service $3 )+ * Network Traffic 4 4
- Network )+0% * % * & + 2 + ADSL, Dial-UP, PPP 4 4
- Services $1 0 )+0% * % * & )* # 2 + Proxy, DHCP, NTP 4 4
- Firewall $1 0 )+0% * *# Firewall Forward Port 2
- VPNs $1 ) 0 )* # VPN ( Virtual Private Network )
- Logs ) 0 Logs 2
0 ' * (# " ) '$ ( Addons Copfilter ) Addons (# $ "
!" 5 .*
System Web Page ) 0 System ... $ &
Home $1 * $3 0 ! ' 0!
* connect * .
Update * 0 ! +& IPCop Patch ( )* * / . $67
Refresh update list ! Update IPCop 0 )* * / . 0 !/*
& & . Upload $)* IPCop ( Update & $' 3

Passwords ) * 0 ! $ . password admin Dial * & $' 4

SSH Access ! Remote & IPCop , /$ SSH 2 enable SSH


Access 0 ! Remote ( network 5 .) & !
Remote 5. config (# # External Access " !" $
GUI Settings * $1 0 , IPCop + 5 8 )+ * $3 -$3 Java script

Backup

) 0 $1 0 backup ' IPCop / .0 ! $1 2 0 &


-Backup to Floppy 0 ! % / .& # $67 Backup to Floppy )0 , disk
floppy drive + # error &
-Backup to file & backup ' Hard disk * Externel HDD * USB Drive
2 / . 0 ! Mount USB Drive * & IPCop # backup
/ .& # $67 Create a new backup set
Shutdown

) * 0 !0 Shutdown * 0 Restart IPCop * )* IPCop %


Shutdown * Reboot %*

Status Web Page


$1
-System Status
-Network Status
-System Graphs
-Traffic Graphs
-Proxy Graphs
-Connections
System Status 0 . . 2 IPCop $9 6 )+ .' . $1
Services: 0 0! $9 6 IPCop $3 )* # .'
Memory: 0 )+ Memory / Swap File IPCop

Disk Usage: 0 )+ Hard Disk

Uptime and Users: 0 )+ * User login

Loaded Modules: 0 Modules * !' )+/ . Kernel

Kernel Version: 0 . . Kernel )+


Network Status 0 0 $ . . : network . $1
Interface: 0 . . 6 Network Cards .')

Current dynamic Leases: 0 . . ; : /var/state/dhcp/dhcp.leases ! $3


)+ DHCP Server . 0 . . IP Address !' )+$9 6 0 + & )+
* .6 )+

Routing Table Entries : 0 Routing

ARP Table Entries : 0 ARP Table


System Graphs 0 )+ CPU, Memory, Swap, Disk / . 0 $1 ;0 !0
. .0$ *: . .$= / .0 !& # ;( ' . .

Traffic Graphs 0 . . Traffic , – IPCop Server / . 0 . $1


Interface Red, Green, Bule, Orange 0 !& # '$ ( 0 . . . $1 . .0$ *:
. .$=

Proxy Graphs 0 . . )+ Proxy Server )* #


Connections 0 + $. $ . / .0 ( : ( &: $ . ( )*
0 ! 0 .

Network Web Pages


Dialup $1 %* $6 >: )+ # : )+) > )+ Interface Red $1 / * Dialup &
% * ) Profiles &

Connection : 6/ )+ * Driver Idle Time )+


Reconnection : 6 #- + & Manual, Persistent, Dial on Demand
) > # &:0% 0 ! 6 Profile * " % * ) In case
reconnection fails,switch to profile # &: 0%
Authentication : $1 % * & )+* 6 $. ISP / . & )0& User name,
Password, Method, Script name (0 0 ! 6 )
DNS : % * & DNS / .0 ! % * & Automatic Manual
Upload ) 0 $1 ( : : firmware ) 6$ >: 2 .') IPCop / .0 !
/* # &: .' % Upload )* IPCop + # $6 >: )+
Modem & %* & Modem " $ . Speaker, Tone 2

Aliases ) > IP * .2 IP 0 ! %* & Server )* # 2 ( /.


)+&' Port Forwarding ) 0 Firewall " $ ( $3 )* # 5.

Service Web Page 0% * & )* # Service 2


Proxy 0% * %* $3 )* # Proxy Server / . 0 2&

Web Proxy
Enable on Green : 0% * $3 )* # Proxy ) & . Green Interface
Transparent on Green : $1 & )* & ' . Proxy $0' & .5 .
/ . & ' .
Enable on Blue : 0% * $3 )* # Proxy ) & . Blue Interface
Transparent on Blue : $1 & )* & ' .) Blue Proxy $0'
& .5 . / . & ' .
Log Enable : 6)* IPCop Log ) )+ Proxy & ' .
Upstream proxy (host : port) : ) > & Proxy & .' )* IPCop
0 , $)* Proxy Server &
Upstream Username : 6 User Proxy Server )+
Upstream Password : 6 Password
Proxy Port : 6 port Proxy Server )* # (! $1 IPCop Default Port: 800 )

Cache Management 0% * %* ( ) Cache )* Proxy


cache
Transfer Limits & %* ' )*? 06 . )*, –

DHCP Server

DHCP : $1 0 % * )* IPCop $3 # DHCP Server / . . $1 Green Blue


Start address & ( # )*
End address & (06 . )*
Default lease time (mins) )* ()+
Max lease time (mins) 06 )* ()+
Domain name suffix & %* + ./@0 :
Allow bootp clients % * )* ' . bootp
Primary DNS Secondary DNS % * & DNS Server )* ' .
Primary NTP Server Secondary NTP Server % * ( & %*
)* ' .
Primary WINS Server Secondary WINS Server % * & WINS Server
Additional DHCP Options 0% * % * & (# # A)* DHCP Server

Current fixed leases ) > . fix ()* & ' . 0 ! %* 0


( $1 )* IPCop !" ( fix )* ' .

Current dynamic leases 0 . ( )* & ' .


Dynamic DNS ) > IP # 0 ! $3 )+ ) 0 Dynamic DNS ( )* Server
0 ! . )+ Internet

Setting :
The classical RED IP used by IPCop during connection $1 & RED * .
# " ' . )+* . IP $ .
Guess the real public IP with help of an external server )* & IP DNS &
.5 . ' .0 ! #
Minimize updates; before an update, compares the dns IP for hostname
“[host.]domain” against RED IP
)+ 0 + /@0 : . +/
Add a host : 0 % + /@0 : $ (# ) 2) . Services / . 6
Services $1 ,')* #
Hostname $1 + /@0 : "
Behind a proxy $1 6 & .'* Proxy
Domain $1 6+ / .
Enable wildcards $1 . + * *
Username Password % * ,')+ *0, . ) ,')* #
Enable $1 %* 6? ( )0+ /@0
Edit Hosts $1 % * + /@0 :)* & ) & . "& %* , & IPCop
Add a hosts : (# + /@0 :) & .

Host IP address ( /@0 : (#


Hostname + /@0 : (#
Domain name / . IPCop " & /
Enable #B !' ( )+
Current hosts : 0 .+ /@0 : .'$9 6

Time Server & 0 % * )+ Network Time Server

Use a Network Time Server :/ .0 ! $3 )+ /. Obtain time from a


Network Time Server ) 0 Primary NTP Server Secondary NTP Server
)*)0& NTP Server )+ # & Default $1 pool.ntp.org !'
Provide time to local network ( )* & $1 NTP Server & .
Update the time :)+0% * ( )* Update & 2 / .0 !)* Update
/ #* %*
Traffic Shaping * $1 + % & 0% & ) )+ & . Service

Setting : #B !' ( $3 )+ Traffic Shaping


) 0 Downlink speed Uplink speed )+0% * %* # 0' 06 0 !
)+) Upload / Download ' * . $1 kbit/sec
Add service : 0% * %* & 0% &? Service 2 / . 3 & High,
Medium, Low (6 : Protocal Service %*
Enabled ( $3 )+
Traffic shaping service : 0 . . Service

Intrusion Detection & 0 )+ $3 )+ Snort 0% * )+ 0 packet (" $ 0 &:

Intrusion Detection System : 0% * )* 0 packet Interface *

Snort rules update : 0% * Update & VRT (Vulnerability Realtime Team) snort
/ .& Oink Code . www.snort.org
Firewall Web Pages 0% * %* ) )+ , & IPCop

$' 0 Traffic Flow IPCop


'$ 0 !C" 8 * Packet ' # , IPCop

Port Forwarding : )+0% * Forward port )* & Server 2 .') & .

Add a new rule 0% * (# rule )* / .


Protocal 6 Protocal )+
Alias IP ! (# ) 0 Network\Aliases )* default
$1 IP IPCop Red
Sorce port 6 port
Destination IP 6 IP & forward $
Destination port 6 port $ .
Current rules 0 . Forward Port
External Access : 0% * % * )* & 5. )+ & IPCop

) ! Remote )+ & IPCop 5. $3 )+


) 0 .
DMZ Pinholes : $1 0 ) %* !" * & .

+ * & . Blue & . Green * & . Orange Green


/ . $3 ( port )*, $-
Blue Access : )+ % * & ) Blue )* & * )+ ) & .
/ .0 ! 6 $1 MAC Address .
Firewall Options : $1 %* )* Ping *

VPNs Web Pages & % * )*)+ & . VPN (Virtual Private Network)
) 0 & VPN $ & D. * )*( 2 Addons
0# 2&

Logs Web Page & 0 )+ % * & logs 2 IPCop 0 . . )+ 2


Log setting : & 0 %* . . Log 2

Log summary : 0 . . / . 2 Packet 0 , IPCop


Proxy logs : 0 )+ Internet , Proxy Server / . 0 . . $1 )+
IP . )+ web site . )+

Firewall logs : 0 !" ( 2 . )+ , IPCop

/ .0 Chain, Protocal )+ Port $ . . )+


Intrusion Detection System logs : 0 !" Packet $ $ * Packet (# > $1 (# C8
)* # $9?*0
System log : 0 . Logs 2

IPCop (Default) -
RED -
DNS 0 log dnsmasq
DHCP Server 0 , # )+ DHCPServer
SSH 0 + )& Remote )+ , SSH *
NTP 0 " * 6 >: NTP Server
Cron 0 * 6 >: % # / . Cron tab
Login-Logout 0 log )& )+
Kernel 0 " * 6 >: # % Kernel IPCop Server
IPSec 0 " * 6 >: IPSec
Update transcript 0 log 2 IPCop Update patch IPCop
Snort 0 Log Snort

#
www.ipcop.org

Kritsada P.
(Bugfly)

You might also like