[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#325696: ITP: arno-iptables-firewall -- Single- and multi-homed firewall script with DSL/ADSL support

Am Dienstag, 30. August 2005 11:36 schrieb Andreas Tille:
> On Tue, 30 Aug 2005, Michael Hanke wrote:
> > Package: wnpp
> > Severity: wishlist
> > Owner: Michael Hanke <michael.hanke@gmail.com>
> >
> >
> > * Package name    : arno-iptables-firewall
> >  Version         : 1.8.4
> >  Upstream Author : Arno van Amersfoort <arnova@rocky.eld.leidenuniv.nl>
> > * URL             : http://rocky.eld.leidenuniv.nl/
> > * License         : GPL
> >  Description     : Single- and multi-homed firewall script with DSL/ADSL
> > support
> Please add the long description.

 This is a firewall configuration script which is extremly easy to 
 understand and can be setup in a few minutes. Some features are:
  * Very secure stateful filtering firewall
  * Both kernel 2.4 & 2.6 support
  * It can be used for both single- and multi(eg. dual)-homed boxes
  * Masquerading (NAT) and SNAT support
  * Multiple external (internet) interfaces
  * Support multiroute NAT & SNAT (load balancing over multiple (internet)
  * Port forwarding (NAT)
  * Support MAC address filtering
  * Support for DSL/ADSL modems
  * Support for PPPoE, PPPoA and bridging modem setups
  * Support for static and ISP assigned (DHCP) IPs
  * Support for (transparent) proxies
  * Full support for DMZ's and DMZ-2-LAN forwarding. You can also use
    it to isolate your eg. wireless LAN
  * (Nmap)(stealth) portscan detection
  * Protection against SYN-flooding (DoS attacks)
  * Protection against ICMP-flooding (DoS attacks)
  * Extensive user-definable logging with rate limiting to prevent log
  * Includes options to optimize your throughput
  * User definable open ports, closed ports, trusted hosts, blocked 
    hosts etc.
  * Log & protection options are both highly customizable
  * Support for custom iptables rules in a separate file
  * Main focus on TCP/UDP/ICMP but additional support for *ALL* 
    IP protocols
  * It works with Freeswan IPSEC (VPN) & SSH Sentinel 
    (http://www.freeswan.org) (+virtual IP's)
  * It works with PoPTop PPTP (http://www.poptop.org)
  * It works with UPnP
  * DRDOS protection/detection (experimental)
 See the website at http://rocky.eld.leidenuniv.nl/ for more 
 information (including a quickstart guide and the FAQ).

> >From an other posting I know that you are seeking for a sponsor.  If I
> > were
> you I would mention this at this place. ;-)

You're right. I still need a sponsor for this package. I posted a request to 
debian-mentors, but recieved no reply. See

I uploaded the current version of the package to http://mentors.debian.net for 



GPG key:  1024D/3144BE0F Michael Hanke
ICQ: 48230050

Attachment: pgpGTzNCSR3mU.pgp
Description: PGP signature

Reply to: