summaryrefslogtreecommitdiffstats
path: root/roles/common/files/usr/local/sbin
Commit message (Expand)AuthorAgeFiles
* Upgrade baseline to Debian 10.Guilhem Moulin2020-05-161
* Convert firewall to nftables.Guilhem Moulin2020-01-232
* firewall: gracefully close invalid connections.Guilhem Moulin2018-12-221
* Firewall: REJECT outgoing connections instead of DROPing them.Guilhem Moulin2018-12-091
* Upgrade baseline to Debian Stretch.Guilhem Moulin2018-12-031
* Firewall: allow duplicates rules.Guilhem Moulin2016-09-181
* IPSec → IPsecGuilhem Moulin2016-06-291
* update-firewall.sh: COMMIT empty iptables rule files.Guilhem Moulin2016-06-291
* typoGuilhem Moulin2016-05-241
* Set up IPSec tunnels between each pair of hosts.Guilhem Moulin2016-05-221
* firewall: allow 127.0.0.1/8 on lo.Guilhem Moulin2015-06-071
* Replace mktemp's deprecated -t option by --tmpdir.Guilhem Moulin2015-06-071
* wibbleGuilhem Moulin2015-06-071
* Reformulate the headers showing the license.Guilhem Moulin2015-06-071
* wibbleGuilhem Moulin2015-06-071
* Replace the 'syslog' facility (5) by 'user' (1).Guilhem Moulin2015-06-071
* wibbleGuilhem Moulin2015-06-071
* Be more specific regarding the protocol in use for IPSec policies.Guilhem Moulin2015-06-071
* Prohibit binding against the IP reserved for IPSec.Guilhem Moulin2015-06-071
* Prefer maching on policy rather than marks.Guilhem Moulin2015-06-071
* Preserve canonical the order of IP tables.Guilhem Moulin2015-06-071
* Documentation.Guilhem Moulin2015-06-071
* Use a dedicated, non-routable, IPv4 for IPSec.Guilhem Moulin2015-06-071
* Major refactoring of the firewall.Guilhem Moulin2015-06-071
* Don't save dynamic rules.Guilhem Moulin2015-06-071
* Use a dedicated 'fail2ban' chain for fail2ban.Guilhem Moulin2015-06-071
* Add a 'check' switch to the firewall.Guilhem Moulin2015-06-071
* Configure v4 and v6 iptable rulesets.Guilhem Moulin2015-06-071