Michael Rash, Security Researcher

Software Release - fwsnort-0.6

The 0.6 release of fwsnort is ready for download. Here is an excerpt from the ChangeLog:
  • Speed increase and disk access decrease by writing iptables commands to the iptables script only after all lines have been generated.
  • Bugfix for DMZ interface.
  • Bugfix for multiple ip_proto fields.
  • Removed the ip protocol as an allowed protocol for translation.
  • Bugfix for negated port numbers.
  • Removed "<-" rule direction since not even snort supports this.
  • Fixed snort rule updates from