Tuesday, February 13, 2018

Summarizing a series of connections to "sort of" reverse engineer what firewall rules might be necessary

TL/DR:

I have a script that went across my entire environment and did a netstat > connections.txt Combined all of those connections.txt from all the servers, and now have it all in a great big Excel sheet.

I have host a, host a IP, host a source port, host b, host b IP, host b destination port, and connection status (LISTEN, ESTABLISHED, etc.).

Is there a simple script I could write (or Excel foo), or maybe another way of looking at this to get a summary of what firewall rules might be necessary to replicate this same connectivity?

This is in preparation for a move, and all IPs are changing.



No comments:

Post a Comment