Subversion Repositories ALCASAR

Rev

Go to most recent revision | Show changed files | Details | Compare with Previous | Blame

Filtering Options

Rev Age Author Path Log message Diff
2986 169 d 19 h rexy /repos/alcasar/trunk/conf/etc/ Improve firewall rules used in custom configurations  
2956 399 d 16 h rexy /repos/alcasar/trunk/ Multi-WAN access with load balancing per user (Thx to Pierre RIVAULT for this great job)  
2854 707 d 14 h rexy /repos/alcasar/trunk/ ACC Spanish translation (to be continued)  
2833 744 d 2 h rexy /repos/alcasar/trunk/ Improve DNS configuration
Bug fix
 
2740 1102 d 2 h rexy /repos/alcasar/trunk/ - nfdump RPM rebuild
- wget update
 
2716 1204 d 15 h tom.houdayer /repos/alcasar/trunk/conf/etc/ Minor change of the local iptables rule "Allow managers to access ACC from the external network"  
2652 1332 d 10 h tom.houdayer /repos/alcasar/trunk/conf/etc/  
2645 1337 d 18 h rexy /repos/alcasar/trunk/conf/etc/ - Exemple of a PAT  
2621 1399 d 13 h tom.houdayer /repos/alcasar/trunk/conf/etc/ Move SMTP port to a variable for output mails rule in alcasar-iptables-local.sh  
2547 1514 d 10 h tom.houdayer /repos/alcasar/trunk/conf/etc/ Add bypass mode compatibility to example "Deny access to protected networks from internal LAN" in alcasar-iptables-local.sh  
2538 1520 d 8 h tom.houdayer /repos/alcasar/trunk/conf/etc/ Add two examples in alcasar-iptables-local.sh:
- Deny access to protected networks from internal LAN
- Allow managers to access ACC from the external network
 
2496 1583 d 10 h tom.houdayer /repos/alcasar/trunk/ Replace obsolete "state" iptables module to "conntrack"  
2355 1797 d 14 h tom.houdayer /repos/alcasar/trunk/ Fix all traceability NFLOG rules by specifying the nfgroup to 1 (since the default group of NFLOG is 1 instead of 0 for ULOG1)  
2353 1798 d 14 h tom.houdayer /repos/alcasar/trunk/ Fix traceability log due to an omission during the migration from ulog to nflog (Fail2Ban, alcasar-iptables-local-mac-filtered & alcasar-ip-blocked)  
1829 2260 d 14 h richard /repos/alcasar/trunk/conf/etc/ - nouveaux commentaires pour préciser l'utilité de ce script
- renommage du fichier d'adresses mac filtrées
--> on devra interfaçer le renseignement de ce fichier dans l'ACC (TODO)
 
1627 2602 d 16 h franck /repos/alcasar/trunk/conf/etc/ Correction exemples Iptables  
1618 2631 d 16 h franck /repos/alcasar/trunk/conf/etc/ Correction coquilles  
1581 2673 d 13 h richard /repos/alcasar/trunk/ - on garde la liste des @IP en DHCP fixe dans le cas d'une mise à jour  
1579 2673 d 18 h richard /repos/alcasar/trunk/  
1522 2746 d 18 h franck /repos/alcasar/trunk/conf/etc/ Rajout de filtrage stricts (HTTP + HTTPS uniquement) sur des équipements identifiés.
Surcouche du filtrage de protocole et est actif avec ou sans DNS_FILTERING
 

Show All