Package Details: husk 0.9.13-1

Git Clone URL: https://aur.archlinux.org/husk.git (read-only, click to copy)
Package Base: husk
Description: An iptables front-end to allow rules to be expressed in a more flexible, free-form style using language.
Upstream URL: https://huskfw.info/
Licenses: GPL
Conflicts: husk-git
Submitter: fukawi2
Maintainer: None
Last Packager: fukawi2
Votes: 4
Popularity: 0.000000
First Submitted: 2010-11-01 07:47 (UTC)
Last Updated: 2018-05-17 01:53 (UTC)

Latest Comments

« First ‹ Previous 1 2 3 Next › Last »

fukawi2 commented on 2012-01-28 01:58 (UTC)

Bump to 0.9.7 Fixed some IPv6 issues mostly.

fukawi2 commented on 2011-12-28 07:20 (UTC)

Decent (usable) IPv6 support in this version. * ==> Version 0.9.5 fixed bug when checking for unknown config file options rework of ipv6 support. updated man docs for ipv6 changes general mass cleanup of code fix small typos remove src/IPTables::Rule.pl fix bug when ipv6 is disabled updates for ipv6 mods

fukawi2 commented on 2011-12-21 11:42 (UTC)

* ==> Version 0.9.4 add support for --log-prefix when using LOG target added some documentation to man page about TARGETS under RULE SYNTAX fix regex that matches quoted strings make header printing its own sub for reuse purposes fe80::/10 isnt site-local, it is link-local; not a bogon replace ipv6 anti-spoof dhcp bypass with generic link-local fe80::/10 bypass fix whitespace indenting cleanup reading of interfaces.conf fix bug in &basename function use "conntrack" module for state rules rather than "state" module remove redundant comment header allow revert to using 'state' module instead of 'conntrack' / 'ctstate' check for unknown configuration in husk.conf dont barf if the config file is empty or all comments; use defaults

fukawi2 commented on 2011-11-13 10:36 (UTC)

Bump to 0.9.3 added tcp 6052 to avg helper fix whitespace in avg helper trim $src in spoof to prevent excess whitespace in output remove references to iptables-restore; not used anymore added ignore_autoconf option to prevent logging of traffic from rfc3927 autoconfiged hosts added "configuration" section to husk manpage fixed typos in pod syntax expanded man page to include full list of references within SEE ALSO section fix regex for finding bad syntax more accurate error message when invalid syntax is found Create a LOG rule for anything that slips to the end of chains. fix perl syntax for calling subrouting log_and_drop fix perl syntax for calling subroutine log_and_drop Merge branch 'master' of github.com:fukawi2/husk fixed default husk.conf file removal of magic constants to set config file defaults when reading conf file perl syntax errors in the last commit.

fukawi2 commented on 2011-09-16 09:41 (UTC)

Bump to 0.9.2 Lots of minor changes and fixes. Expanded and more accurate helpers. fire script now saves rules using init script if it can be found.

fukawi2 commented on 2011-06-13 12:53 (UTC)

Bump to 0.9.0 Initial IPv6 support in this :)

fukawi2 commented on 2011-04-14 13:42 (UTC)

* ==> Version 0.8.4 Merge branch 'master' of github.com:fukawi2/husk always print license and disclaimer at top of output add system init script save command to end of fire script cleanup of fire script fixed typo in sql helper removed ICMP target from standalone example rules (replaced by helper file) added support for custom named xen bridges (eg, xenNET) added pptp helper to Makefile added helper ruleset for pptp use "x" instead of "crs" for cross-zone chain prefix

fukawi2 commented on 2011-02-17 08:26 (UTC)

==> Version 0.8.0 fixed handling of ports in "map" rules support for using source port and destination port in the same rule; support for multiport interception small fix to my home-made coalesce function code correctness for returning from procedure subs added better code correctness for usage of next and last functions wrong backref on source|dest ports fixed broken file includes updated logging options for log and drop updated logging comment for portscan rules added licensing details for portscan rules fix incorrect logic on comparing --no-confirm flag in fire script only jump antispoof chain for traffic on interfaced we're protecting fixed the way we append the line number comment to raw iptables rules added portscan to example rules added portscan functionality to README adjust logging options to prevent dos issues added a "common" function for portscan protection added a --no-confirm option to fire script updated example rules to use current chain substitution in raw iptables allow current chain substitution in raw iptables

fukawi2 commented on 2010-12-31 04:29 (UTC)

==> Version 0.7.2 changed the criteria for autogenerated crs chains only check defined interfaces for bridged status fixed bridge handling dont use physdev for ME zone more intelligent bridge detection fixed simple example rules added "vif" interface regex added a TODO note added support for bridged interfaces using physdev module updated regex for interface name matching validation

fukawi2 commented on 2010-12-22 12:02 (UTC)

Version 0.7.0. Rewrite and Refactor to avoid copyright issues.