Download List

Descripción del Proyecto

Arno's IPTABLES Firewall Script is a secure stateful firewall for both single and multi-homed machines. It supports NAT and SNAT, port forwarding, ADSL ethernet modems with both static and dynamically assigned IPs, MAC address filtering, stealth port scan detection, DMZ support, protection against SYN/ICMP flooding, experimental IPv6 support, multi-interface/aliased-IP support, and extensive user definable logging with rate limiting to prevent log flooding. It has plugin support to add extra features (like SSH Brute Force protection and (Racoon) IPSEC support). It is easy to configure and highly customizable. A filter script that makes your firewall log more readable is also included.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2010-04-14 00:47
1.9.2k

El check_interface () la función se fijó para trabajar para las interfaces VLAN. Varios plugins han sido actualizados. Varios ajustes y correcciones se hicieron en el script de instalación.
Tags: Stable
The check_interface() function was fixed to work for VLAN interfaces. Several plugins were updated. Several tweaks and fixes were made in the install script.

2010-03-02 01:42
1.9.2j

Varios problemas en el script de instalación se han arreglado.
Tags: Stable
Several problems in the install script were fixed.

2010-02-25 16:51
1.9.2i

El script de instalación se ha modificado para que puedan comenzar después de que el servidor de seguridad de red se active en el arranque. Una excavación () envoltorio de la función que degrada a cavar nslookup si no se dispone de esta. Nueva DynDNS y Tráfico de Contabilidad plugins con el almacenamiento en caché de acogida se han añadido. El script de instalación detecta ahora las interfaces y sus propiedades en lugar de la secuencia de comandos principal. sysctl () ya no siempre se aplica el argumento-w. Un fallo de DNS en el inicio se ha fijado. Ciertas reglas ahora por defecto a anyhost y / o ANYPORT menos si no se especifica, ya que es demasiado confidencial del usuario. Varios ajustes y mejoras estéticas se hicieron.
Tags: Stable
The install script was modified to make the firewall start after the network is brought up on boot. A dig() function wrapper that degrades to nslookup if dig is not available was added. New DynDNS and Traffic Accounting plugins featuring host caching were added. The install script now detects interfaces and their properties instead of the main script. sysctl() no longer always applies the -w argument. A DNS failure on startup was fixed. Certain rules now default to ANYHOST and/or ANYPORT less if it is not specified, as it is too user sensitive. Miscellaneous tweaks and cosmetic enhancements were made.

2009-11-25 00:14
1.9.2g

Varios ajustes y correcciones se hicieron.
Tags: Stable
Miscellaneous tweaks and fixes were done.

2009-11-09 23:30
1.9.2e

Algunos DOS o configuración del kernel de prevención se han añadido. Actualizaciones de módulo IPv6 se hicieron. Módulo de sondeo fue mejorada. Varios ajustes, correcciones y mejoras se hicieron.
Some more DOS-prevention kernel settings were added. IPv6 module updates were made. Module probing was improved. Miscellaneous tweaks, fixes, and improvements were made.

Project Resources