Commit Graph

51 Commits

Author SHA1 Message Date
96b3e162fe Fix error droping ICMP packets. fix error dropping private networks. 2020-10-29 12:55:59 +01:00
bcdee40228 Changing rules for protection against several ddos attacks. 2020-10-28 20:57:08 +01:00
498b34741c Add support for Portforwarding TCP/UDP using socat. 2020-06-03 14:10:27 +02:00
53de5746cf Support Streaming via YouTube. 2020-05-17 17:56:23 +02:00
c695a63372 ip6t-firewall-server,ipt-firewall-server: add rtp port for jibri (jitsi client) service. 2020-05-17 04:20:13 +02:00
fbe1089099 add support for Jibri Streamin/Recording. 2020-05-16 13:42:22 +02:00
df10be0d45 Add support fpr Jitsi Meet Authentication agains dovecot. 2020-04-26 10:16:32 +02:00
dcbe4605bc Add outgoing ports needed by jitsi service (discover public address fronm stun services). 2020-04-23 15:12:29 +02:00
450a9d5dcf Adjust support for TURN Server (NC App Talk). 2020-03-21 18:43:45 +01:00
9f2764c0ae Add support for NCs Talk app with own stun/turn server. 2020-03-21 12:57:11 +01:00
9d8983713c Adjust firewall scripts to support Jitsi Video Conferencing Service. 2020-03-17 22:59:01 +01:00
5ea1b0acbd DNS 'ANY' request uses TCP port. So allow DNS TCP requests for 'resolver_allowed_network_arr'. 2020-02-19 14:03:16 +01:00
Christoph
1fc3da67f8 ip6t-firewall-server: fix error at 'allow_local_service' - separator was wrong. 2019-09-22 23:39:44 +02:00
e292be4141 Support local service from given extern network 2019-09-04 01:11:31 +02:00
051e7da995 Add support for (local) dovecot auth service. 2019-09-03 17:54:46 +02:00
f87f7bbda0 Support multiple networks for access to local resolver - forgot iptables scripts. 2019-09-03 03:52:54 +02:00
ckubu
1b35830610 Add support for XMPP (Jabber Prosody) Service 2019-09-02 01:05:22 +02:00
2665010eb3 support Resolver for specified (local) network. Part 2 2019-09-01 20:59:38 +02:00
142778c718 Support local NTP Server. 2019-09-01 17:29:54 +02:00
57d09ba98d Add file 'conf/default_ports.conf'. Remove file 'conf/ports.conf'. 2019-06-30 15:29:07 +02:00
b3347d273d Merge branch 'master' of git.oopen.de:firewall/ipt-server 2019-05-20 15:54:14 +02:00
f4b74813d2 Fix error at section 'Special TCP Ports OUT'. 2019-05-20 15:53:56 +02:00
55bd9d4335 Fix error forwarding private networks. 2019-05-19 18:30:18 +02:00
dc91143e39 Fix error reading IPv4/IPv6 ban list. 2019-05-12 17:10:39 +02:00
9444e0ae12 Allow GIT port (9418) out. 2019-03-13 16:04:59 +01:00
c6de143b1e Reorganize ports for services, rename 'default_ports.conf' to 'ports.conf'. 2019-03-09 15:42:24 +01:00
4967e6549d New: allow_all_outgoing_traffic (true/false) 2019-03-07 19:31:12 +01:00
7c8e98198e Fis some error, adjust docu. 2019-03-07 18:15:16 +01:00
15accbe3a6 Complete the last commit. 2019-03-07 05:07:46 +01:00
3c896d7052 Add support for encrypted connections 'FTP out only'. 2019-03-02 21:48:13 +01:00
39529f7f54 ip6t-firewall-server: change name of created ftpdata list to ftp6date_ 2019-03-02 21:11:12 +01:00
45b3274c03 Fix error for ftp server rules. 2019-03-02 04:50:40 +01:00
e7fd6ee87a Add rules for extern services, extern networks and local (non-standard) services. 2019-02-25 15:24:51 +01:00
7219691f1e Some minor changes. 2019-02-25 01:24:14 +01:00
19bfef7e71 Use CT target also for incomming ftp connections. 2019-02-25 01:13:58 +01:00
7a024c025e Use CT helper for ftp rules 'FTP out only'. 2019-02-24 17:25:12 +01:00
97c6ae3bff Remove development code (echo-line). 2018-10-20 02:58:05 +02:00
dabe845943 Changes in log output for banned ipv6 addresses. 2018-10-20 02:53:06 +02:00
6e60791d3c Add support for IPv6 ban list. 2018-10-20 02:33:46 +02:00
1a57a304e6 Support list of IPv4 addresses to ban ('ban_ipv4.list'). Change handling of bridged interfaces. 2018-10-01 04:06:17 +02:00
9e7a82e408 Add support for VPN out (client). 2018-09-23 00:33:26 +02:00
994cfcefa9 Fix tcp out ports. 2018-04-29 16:57:42 +02:00
b2dbf5c6f5 Change start/stop script for fail2ban. 2017-11-27 16:23:03 +01:00
f362a8dfc1 Some minor changes on script output. 2017-08-15 14:42:27 +02:00
6966eff903 Add rule to prevent bridged traffic getting pushed through the host's iptables rules if requested (do_not_firewall_bridged_traffic). 2017-08-15 14:04:18 +02:00
b071e7b606 Fix Error for handling 'restrict_local_service_to_net' and 'restrict_local_net_to_net' 2017-07-16 00:50:00 +02:00
a3d0c9161a Add options 'restrict_local_service_to_net' and 'restrict_local_net_to_net' 2017-07-15 14:10:06 +02:00
350f2dc487 Add Mail Client Rules. 2017-07-14 03:35:39 +02:00
b5f8bc672b Add some comments for DNS rules. 2017-06-02 11:34:43 +02:00
60dd071fc9 Change Shebang 2017-02-22 04:29:05 +01:00