Yafig is a LAMP-based firewall rule generator that creates shell scripts for use with Linux netfilter/iptables. The user interface is similar to the FireWall-1 policy editor. Its main features are Web-based host, network, and service management. support for multiple policies with individual password protection, shared objects for multiple policies, support for chains (default and custom), and architecture independence.
The Horatio system is a firewall authentication tool. The premise: legitimate users want to attach laptops and other mobile hosts to the network, but security demands that illegitimate users be prevented from accessing the internal, secure network and from abusing the general Internet. The approach taken by Horatio is to provide a separate, untrusted network that only connects to the internal network (and thus to the Internet) through a firewall that by default does not pass any traffic. When a legitimate user connects his or her host, it is assigned an address by a DHCP server (such as dhcpd), but is unable to contact anything outside the untrusted network. The user must point a Web browser at the Horatio web server, which runs on the firewall machine, and provide a username and password. Once the username and password have been validated, the firewall rules are modified to allow the host access to the rest of the network.
sonar is a network reconnaissance utility. It runs all its scans from plugins. The currently supported plugins are an ICMP scan (a la the original sonar) and an ACK scan which can see if hosts that don't respond to ICMP are online. With the ability to create your own plugins, sonar is becoming the most extensible security scanner available.
MRTNK is a set of scripts that generate RRD databases, update these databases with SNMP data or external scripts, create graphics with rrdtool (a set of pre-designed graphics is available), and create HTML pages with the graphics. All of this is done through an easy-to-setup config file. As the graphics contain all the relevant information, HTML pages need to be created only once.