firewall
2012-03-12 Mark WoodingExtend proper ICMP handling to IPv6.
2012-03-12 Mark Woodingbookends.m4: Optimize checking for forwarding IPv6...
2012-03-11 Mark Woodingvampire.m4: Extend services to untrusted hosts over...
2012-03-11 Mark WoodingIntroduce variable for expected input chains.
2012-03-11 Mark Woodinglocal.m4: Fix the `safe' network prefix length.
2012-03-11 Mark Woodinglocal.m4: Define the IPv6 network structure.
2012-03-11 Mark Woodinglocal.m4: Add routes to/from the `safe' network.
2012-03-11 Mark Woodinglocal.m4: The VPN will be available through the colo.
2012-03-11 Mark Woodingfunctions.m4: Correct defaulting of IPv6 host addresses.
2012-03-08 Mark Woodingclassify.m4: Reject the RFC5737 documentation-only...
2012-03-07 Mark WoodingMove per-host filtering to diversion 86 as promised.
2012-03-07 Mark Woodinglocal.m4: Add `unsafe' to ibanez `br-dmz' interface.
2012-03-07 Mark Woodingfunctions: Move NTP server list out of line.
2012-03-06 Mark Woodinglocal.m4: Allow dmz/jump packets on unsafe/colo network...
2012-03-06 Mark Woodingradius.m4: Forbid traffic directly to the NAT address.
2012-03-06 Mark Woodingradius.m4: Use the correct interface name for NAT.
2012-03-06 Mark Woodinglocal.m4: Fix IGMP acceptance (debris from old interfac...
2012-03-05 Mark Woodingfunctions.m4: Write the netclass ids to the trace output.
2012-03-05 Mark Woodingbookends.m4: If debugging, dump the final tables.
2012-03-05 Mark WoodingDetermine forwarding and reverse-path filtering from...
2012-03-05 Mark WoodingOverhaul address classification.
2012-03-05 Mark Woodinglocal.m4: Promote the NTP server configuration to a...
2012-03-05 Mark WoodingRenumber the diversions.
2012-03-05 Mark Woodingfixup! WIP on emergency: 7a108d1 Makefile: New target...
2012-03-05 Mark WoodingMakefile: New target for tracking diversions.
2012-03-05 Mark WoodingMakefile, base.m4: Inject the target hostname into...
2012-02-12 Mark Woodingnumbers.m4, gibson.m4: Allow gibson to receive IPMI...
2012-02-12 Mark Woodingbookends.m4: Open up tables we clobbered at exit.
2012-02-11 Mark Woodingfender: New host, with basic firewall.
2012-02-11 Mark Woodingnumbers.m4, vampire.m4: Serve TFTP to the untrusted...
2012-02-11 Mark Woodingnumbers.m4, gibson.m4: Allow gibson public SIP access.
2011-07-23 Mark Woodingjem.m4: Add a hook for SAUCE.
2011-07-23 Mark Woodingfunctions.m4: New function for arranging that an ipset...
2011-07-23 Mark Woodingfunctions.m4: Make clearchain tolerant of existing...
2011-07-23 Mark Woodingbookends.m4: Much more intelligent initialization.
2011-07-23 Mark Woodingjem.m4: Remove SMB for untrusted hosts.
2011-07-23 Mark Woodingfunctions.m4: Rate-limit rejections on error chains.
2011-07-17 Mark Woodingbookends.m4: Provide a hook chain for fail2ban.
2011-07-15 Mark Woodingradius.m4: Allow IPv6 tunnel from Hurricane Electric...
2011-07-15 Mark Woodingfunctions.m4, numbers.m4: Define protocol number for...
2011-07-15 Mark Woodingbookend.m4: Finish off the IPv6 chains.
2011-07-13 Mark Woodinghosts: Allow incoming ident requests.
2011-07-10 Mark Woodingradius.m4: Take over NAT duties.
2011-07-10 Mark WoodingMajor network restructuring.
2011-07-10 Mark Woodingbookends.m4, config.m4: Allow configuration of reverse...
2011-07-10 Mark Woodingfunctions.m4: Set IPv6 options in setopt and setdevopt.
2011-07-10 Mark Woodingbookends.m4: Only disable filtering on bridges if we...
2011-07-10 Mark Woodingbookends.m4: Allow responding to broadcast and multicas...
2011-07-10 Mark Woodingclassify.m4, functions.m4: Multiple interfaces can...
2011-07-10 Mark Woodingfunctions.m4: Allow multiple interfaces to be defined...
2011-07-10 Mark Woodingfunctions.m4, local.m4: Workaround for option parser...
2011-07-10 Mark Woodingbase.m4: Fix LSB init-script ordering.
2011-06-19 Mark Woodingbookends, classify, local: Fixes for IP multicasting.
2011-06-19 Mark Woodinglocal, vampire, ibanez: Centralize definition of NTP...
2011-06-07 Mark Woodingibanez, radius: Move NTP service to ibanez.
2011-06-06 Mark Woodingbase.m4: Include an LSB header so that insserv can...
2011-06-06 Mark WoodingMakefile: Better rule hacking for installation.
2011-06-06 Mark Woodingprologue.m4: Use iptables-{save,restore} for the molly...
2011-05-31 Mark WoodingHost changeover.
2011-05-31 Mark Woodingconfig.m4: Stupid typo.
2011-05-31 Mark Woodingbase.m4: Fix missing comma in `setconf', which has...
2011-05-31 Mark Woodingbase.m4: On second thoughts, this one is more m4 than...
2011-05-31 Mark Woodinglocal.m4: Disable forwarding multicasts until I work...
2011-05-31 Mark Woodingclassify.m4: Dislike multicast addresses as a source...
2011-05-31 Mark Woodingprologue, Makefile, local.mk: Overhaul installation.
2011-05-31 Mark WoodingMakefie: Give the main build the silent treatment.
2011-05-31 Mark WoodingMakefile: Add licence block at the top.
2011-05-31 Mark Wooding*.m4: Use `sh' mode for editing these.
2011-05-22 Mark WoodingIPv6 firewall support.
2011-05-22 Mark Woodinglocal.mk: Introduce new target for testing.
2011-05-22 Mark WoodingWhitespace fixing.
2011-05-20 Mark Woodingvampire: Allow incoming IMAPS and Submission.
2011-03-07 Mark WoodingMerge branch 'master' of /home/mdw/public-git/firewall
2011-03-07 Mark Woodingvampire: Allow outside access to squid.
2011-03-07 Mark Woodingvampire: Allow SMB from the untrusted network.
2011-01-17 Mark Woodingmetalzone: Allow incoming `submission' connections.
2011-01-17 Mark WoodingMerge branch 'master' of /home/mdw/public-git/firewall
2010-05-09 Mark Woodinglocal.m4: Put the default network stanza at the end.
2010-05-09 Mark Woodinglocal.m4: Note terror's participation in the VPN.
2010-04-27 Mark WoodingMerge branch 'master' of /home/mdw/public-git/firewall
2010-04-26 Mark Woodingvampire: Allow incoming I2P traffic.
2010-04-24 Mark Woodingmetalzone: Open up incoming IMAPS.
2010-04-17 Mark WoodingMerge branch 'master' of /home/mdw/public-git/firewall
2010-04-17 Mark Woodingvampire.m4: Allow MPD again.
2010-04-17 Mark WoodingMerge branch 'master' of metalzone:public-git/firewall
2010-04-17 Mark WoodingAdd iodine support..
2010-04-15 Mark Woodinglocal.mk: Fix spurious failure.
2010-04-15 Mark Woodingfunctions.m4, local.m4: Handle fragments in a useful...
2010-04-15 Mark Woodingclassify.m4: Correct summary line at the top.
2010-04-08 Mark Woodingvampire.m4: Remove the magical DNS DDoS hack.
2010-02-01 Mark Woodingvampire: Open `disorder' port; close `mpd'.
2010-01-28 Mark Woodingvampire: Allow MPD traffic through.
2009-07-23 Mark Woodingvampire.m4: Log messages when rejecting DNS DDOS packets.
2009-06-04 Mark Woodingvampire: Add special hook for DNS badness.
2009-01-13 Mark Woodingvampire: Add accounting rules for Tor on the OUTPUT...
2009-01-12 Mark Woodingvampire: Move tor ports to a separate rule.
2009-01-12 Mark Woodingvampire: Open up public ports for tor.
2009-01-07 Mark Woodinglocal.mk: Add install rule.
2009-01-07 Mark WoodingMakefile: Put default rule before local makefile.
2009-01-07 Mark Woodingbookends: Prevent packets with destination localhost.
next