RSS 519 projects tagged "Security"

No download Website Updated 14 Apr 2014 nftables

Screenshot
Pop 241.48
Vit 5.23

nftables aims to replace the existing {ip,ip6,arp,eb}tables framework. It provides a new packet filtering framework, a new userspace utility, and a compatibility layer for {ip,ip6}tables. nftables is built upon the building blocks of the Netfilter infrastructure such as the existing hooks, the connection tracking system, the userspace queueing component, and the logging subsystem.

No download No website Updated 08 Apr 2014 C-ICAP Classify

Screenshot
Pop 65.59
Vit 6.16

C-ICAP Classify is a module that allows classification (labeling) of Web pages, images, and soon video based on content. Labels are placed in HTTP headers. Any PIC-Label META tags are exported into HTTP headers. This allows for creation of very flexible filters according to rules defined by the user, using the ICAP enabled proxy's ACLs. It is not a URL filter, so implementing it with sslBump or similar proxy technologies makes it very difficult to bypass. Text classification is done using Fast Hyperspace (based on Hyperspace from CRM114) and/or a Fast Naive Bayes. Image and video (when implemented) use haar feature detection from the OpenCV library.

No download No website Updated 22 Oct 2013 Trigger

Screenshot
Pop 25.20
Vit 13.47

Trigger is a robust network automation toolkit that was designed for interfacing with network devices and managing network configuration and security policy. It increases the speed and efficiency of managing large-scale networks while reducing the risk of human error.

Download Website Updated 19 Aug 2013 Sanewall

Screenshot
Pop 125.67
Vit 3.67

Sanewall is a firewall builder for Linux that uses an elegant language abstracted to just the right level. This makes it powerful and easy to use, audit, and understand. It allows you to create very readable configurations even for complex stateful firewalls. Sanewall can be used for almost any purpose, including control of any number of internal/external/virtual interfaces, control of any combination of routed traffic, setting up DMZ routers and servers, all kinds of NAT, providing strong protection (flooding, spoofing, etc.), transparent caches, source MAC verification, blacklists, and whitelists. Newer versions abstract the differences between IPv4 and IPv6, allowing you to define a common set of rules for both, while permitting specific rules for each as you need. Sanewall is a fork of FireHOL and can make use of existing FireHOL configurations.

Download Website Updated 23 Nov 2013 iptables-bash_completion

Screenshot
Pop 98.71
Vit 2.26

iptables-bash_completion provides programmable completion for the iptables and ip6tables programs. iptables options are shown only if they are valid at the current context. It supports completion of options, matches, and targets, and dynamic retrieval of data from the system, including chains, set names, interfaces, and hostnames. Environment variables allow completion options to be tuned. IP and MAC addresses can be supplied using a file.

Download Website Updated 06 Feb 2014 ipset_list

Screenshot
Pop 170.31
Vit 7.03

ipset_list is a wrapper script for listing sets of the netfilter ipset program. It allows you to match and display sets, headers, and elements in various ways. Optionally, the output can be colorized.

Download Website Updated 13 Jan 2013 xtadm

Screenshot
Pop 35.61
Vit 1.00

xtadm is a commandline utility used to set up and manipulate the Xtables2 packet filter's ruleset. It comes with the libxtadm high-level usersapce library, which contains the textual rule parser and plugin support.

Download Website Updated 13 Jan 2013 libnetfilter_xtables

Screenshot
Pop 32.94
Vit 1.00

libnetfilter_xtables provides an API for the Netlink transport that is used for Xtables2. Xtables2 is one of the prospective replacement candidates for the aged iptables-arptables-ebtables Linux packet filters.

Download Website Updated 26 Jan 2013 arptables

Screenshot
Pop 51.21
Vit 1.02

arptables is an administrative utility for managing the ARP filter table in the Linux kernel.

Download Website Updated 11 May 2013 ipset

Screenshot
Pop 82.06
Vit 2.58

ipset allows administration of sets of IP addresses/networks, ports, MAC addresses, and interfaces, which are stored in hash or bitmap data structures. These can then be used in conjunction with iptables to do fast presence lookups.

Screenshot

Project Spotlight

Infovore

A map/reduce framework for processing large RDF data sets.

Screenshot

Project Spotlight

WiKID Strong Authentication System

A two-factor authentication system.