Still to finish: port knocking section, ssh bruteforce protection with recent module, rewrite of NAT section, firewall script. I'm probably going to end up rewriting a lot of the other stuff too, to make the article/guide easier to follow. Thestinger 12:50, 8 April 2010 (EDT)

Also need to fix the portscanner section, right now a local windows machine will get themselves on the list from netbios stuff, it's just a matter of adding a limit to how many packets is normal and then putting ones that go over that on the recent list Thestinger 20:32, 19 April 2010 (EDT)


The NAT section here is incomplete and there is a far superior article here: NAT'ing firewall - Share your broadband connection. If no one opposes it, I'm going to work on improving NAT'ing firewall - Share your broadband connection and then get rid of the NAT section here once it has no unique information. This article is for a "Simple Stateful Firewall", not an NAT. Thestinger 13:35, 9 April 2010 (EDT)