Download List

Projeto Descrição

A fail2ban lite. IPQ BDB is a netfilter userspace daemon that can block or mark IP packets according to iptables rules that issue the corresponding -j NFQUEUE, as well as a Berkeley database of bad IPv4 addresses. A log parser and a banning utility add entries to the database. An IP has to be caught a configurable number of times before being blocked. Transitions between blocked and non-blocked are faded using probabilities. A halving period governs IP rehabilitation.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2011-03-11 07:04
1.03

Existe uma nova opção - connkill-exec (-e para o short) no ban-DII e analisá-IBD. Quando esta opção é dado, se o endereço atualizado do bloco chega a probabilidade de 100%, seguida de um comando externo é invocado. O comando deve ser configurado em um novo arquivo de configuração e, presumivelmente, mata qualquer conexão estabelecida. Usando "conntrack-D" parece funcionar bem, pois permite que o firewall stateful para, posteriormente, detectar pacotes estranhos no seu próprio. Novas opções para o juiz-IBD lhe permitem configurar o tamanho do buffer nfnetfilter, ENOBUFS notificação de erro, eo comprimento de cada fila max. Várias correções.
There is a new option --exec-connkill (-e for short) in ibd-ban and ibd-parse. When this option is given, if an updated address reaches 100% block probability, then an external command is invoked. The command is to be configured in a new configuration file, and presumably kills any established connection. Using "conntrack -D" seems to work well, as it allows the stateful firewall to thereafter detect extraneous packets on its own. New options for ibd-judge allow it to configure nfnetfilter buffer size, ENOBUFS error notification, and each queue's max length. Various fixes.

Project Resources