全部搜尋項
buster  ] [  bullseye  ] [  bookworm  ]
[ 原始碼: apf-firewall  ]

套件:apf-firewall(9.7+rev1-5.1)

apf-firewall 的相關連結

Screenshot

Debian 的資源:

下載原始碼套件 apf-firewall

維護者:

外部的資源:

相似套件:

easy iptables based firewall system

Advanced Policy Firewall (APF) is an iptables(netfilter) based firewall system designed around the essential needs of today's Internet deployed servers and the unique needs of custom deployed Linux installations. The configuration of APF is designed to be very informative and present the user with an easy to follow process, from top to bottom of the configuration file. The management of APF on a day-to-day basis is conducted from the command line with the 'apf' command, which includes detailed usage information and all the features one would expect from a current and forward thinking firewall solution.

Summary of features:

  * detailed and well commented configuration file
  * granular inbound and outbound network filtering
  * user id based outbound network filtering
  * application based network filtering
  * trust based rule files with an optional advanced syntax
  * global trust system where rules can be downloaded from a central
    management server
  * reactive address blocking (RAB), next generation in-line intrusion
    prevention
  * debug mode provided for testing new features and configuration setups
  * fast load feature that allows for 1000+ rules to load in under 1 second
  * inbound and outbound network interfaces can be independently configured
  * global tcp/udp port & icmp type filtering with multiple methods of
    executing filters (drop, reject, prohibit)
  * configurable policies for each ip on the system with convenience variables
    to import settings
  * packet flow rate limiting that prevents abuse on the most widely abused
    protocol, icmp
  * prerouting and postrouting rules for optimal network performance
  * dshield.org block list support to ban networks exhibiting suspicious
    activity
  * spamhaus Don't Route Or Peer List support to ban known "hijacked zombie"
    IP blocks
  * any number of additional interfaces may be configured as firewalled
    (untrusted) or trusted (not firewalled)
  * additional firewalled interfaces can have there own unique firewall
    policies applied
  * intelligent route verification to prevent embarrassing configuration
    errors
  * advanced packet sanity checks to make sure traffic coming and going meets
    the strictest of standards
  * filter attacks such as fragmented UDP, port zero floods, stuffed routing,
    arp poisoning and more
  * configurable type of service options to dictate the priority of different
    types of network traffic
  * intelligent default settings to meet every day server setups
  * dynamic configuration of your servers local DNS revolvers into the firewall
  * optional filtering of common p2p applications
  * optional filtering of private & reserved IP address space

標籤: 系統管理: 設定工具, 實做語言: sh, bash, ksh, tcsh 或其他 shells, 使用者介面: interface::commandline, network::firewall, Network Protocol: IP, 角色: 程式, 範圍: scope::utility, security::firewall, Purpose: 設定

其他與 apf-firewall 有關的套件

  • 依賴
  • 推薦
  • 建議
  • 增強

下載 apf-firewall

下載可用於所有硬體架構的
硬體架構 套件大小 安裝後大小 檔案
all 96。5 kB269。0 kB [檔案列表]