IMPORTANCE OF FIREWALL, NETSTAT AND SYSTEMCTL COMMANDS INTRODUCTION In computing, firewall refers to a network security system that controls the incoming and outgoing network traffic based on an applied rule set. It establishes a barrier between a trusted, secure internal network, with another network, assumed not secure and not trusted. Many personal computer operating systems incorporate software-based firewalls to protect against threats from the public Internet.
Netstat is a command-line tool that displays network connections for the transmission control protocol, routing tables and a network interface and network protocol statistics. Additionally, Netstat can be used to show sockets that are listening on your system. Netstat can be used to help determine if there are unauthorized outlets open to or from your system, which could indicate malicious activity being directed towards your system.
System CT is a command line utility that is used to control various aspects of services on a system (start or stop, run at startup). It is used to introspect the state of the system and service manager.
Major options used
-t, --type= The argument is usually a comma separated list of unit types such as service and socket
--state= a comma-separated list should be used as the argument for unit LOAD, SUB or ACTIVE status. The specified states are shown when the units are listed.
-p,--property= Used when teaching unit/manager properties with show command, limit display to certain features as specified by argument
-a,--all Used when listing groups, showing all loaded units and inactive units regardless of their state. Also shows all properties regardless of whether they are set or not. The list group files command is often used in listing all units.
--runtime: used with enable, disable or edit, it makes changes temporarily and are lost on reboot
Netstat options
-a = used to display active TCP connections with the listening state and UDP ports being that are being listened.
-b = shows the processes actual file name
-e = used as a switch to display statistics about the network connection.
-f = makes the command display the fully qualified domain name (FQDN), and foreign IP addresses are applicable.
-n = used to prevent Netstat from attempting to determine host names for external IP addresses.
-o = used for troubleshooting tasks and displays the PID associated with any displayed connection.
-s = used to show detailed statistics by protocol.
-t + shows the current TCP Chimney offload state in the place of displayed TCP state.
-x = shows all network direct listeners, connections, and endpoints.
Firewall options
The firewall uses many options specifically for certain tasks. There are options administrator accounts, anti-virus, audit, downloads, DNS, amongst others.
These commands can be used on various operating systems and can be applied to any network issues, and system administrators and network and internet administrators can use them.
In troubleshooting of common system errors, this commands are easier to use and understand. Read More
