Version 2.0.1-beta1 of Arno's IPTABLES Firewall Script

Release Notes: This release fixes the kernel_ver_chk() function to properly handle kernel 3, fixes variables containing REJECT_UDP with IPv6 enabled (it should use "icmp6-addr-unreachable" for IPv6), parses AIF variables with a common function, and logs missing fields with a warning.

Other releases

  •  15 Apr 2014 12:07

    Release Notes: arno-fwfilter and the Gentoo init script were updated. Some Gentoo specific stuff that isn't required anymore was removed. The TRACE option was removed. DMZ_INPUT_DENY_LOG and DMZ_OUTPUT_DENY_LOG variables were added. The DYNDNS and Traffic Accounting plugins were refactored. There were also miscellaneous tweaks and changes.

    •  19 Mar 2012 12:46

    Release Notes: This release fixes RESERVED_NET_DROP, which only worked when RESERVED_NET_LOG was enabled (regression), fixes the installation script, and updates/corrects documentation.

    •  13 Mar 2012 13:41

    Release Notes: The LAN_INET_OPEN_xxx, LAN_INET_HOST_OPEN_xxx, DMZ_INET_OPEN_xxx, and DMZ_INET_HOST_OPEN logic and handling was changed, and handling of some of the sysctl kernel settings was tweaked. It is now possible to disable setting/resetting of some settings (like forwarding). The default UDP connection timeout is now 60 seconds. Support for a new LOCAL_CONFIG_DIR variable was added. It defaults to "/etc/arno-iptables-firewall/conf.d". Documentation was improved. Miscellaneous tweaks were made for arno-fwfilter.

    •  23 Dec 2011 13:53

    Release Notes: This release removes DNS_FAST_FAIL and RESOLV_IPS, since they are both obsolete. It adds miscellaneous tweaks.

    •  14 Oct 2011 15:43

    Release Notes: This release fixes the kernel_ver_chk() function to properly handle kernel 3, fixes variables containing REJECT_UDP with IPv6 enabled (it should use "icmp6-addr-unreachable" for IPv6), parses AIF variables with a common function, and logs missing fields with a warning.

    Screenshot

    Project Spotlight

    InvestiGateIX

    A Debian GNU/Linux and Apache Solr-based live system.

    Screenshot

    Project Spotlight

    BalanceNG

    A modern software IP load balancer.