Commit Graph

40 Commits

Author SHA1 Message Date
Pawel Krawczyk
bfaa812561 mention Dropbear rule 2015-01-08 23:57:08 +00:00
Pawel Krawczyk
8e5f1da414 add OpenWRT documentation 2015-01-08 23:51:24 +00:00
Pawel Krawczyk
09a513c4c5 add OpenWRT script 2015-01-08 23:44:22 +00:00
Pawel Krawczyk
9dee5ec650 obsolete semicolon 2015-01-08 23:41:14 +00:00
Pawel Krawczyk
22a2b771db reword warning on bogons, add info about daily updates 2015-01-07 11:23:22 +00:00
Pawel Krawczyk
3647c11f66 add OSSEC and manual-blacklist 2015-01-07 11:17:58 +00:00
Pawel Krawczyk
cf891f6bea add sample output 2015-01-07 11:04:43 +00:00
Pawel Krawczyk
37a5283b5d OpenWRT curl doesn't support --compressed 2015-01-07 10:58:42 +00:00
Pawel Krawczyk
660d661551 merged with blacklist.sh 2015-01-07 10:57:16 +00:00
Pawel Krawczyk
f2b54af727 install into proper chains 2015-01-07 10:57:00 +00:00
Pawel Krawczyk
097a52fcad update docs 2015-01-07 10:51:47 +00:00
Pawel Krawczyk
86c3690499 chmod +x 2015-01-07 10:30:05 +00:00
Pawel Krawczyk
f672ccfc60 add OSSEC active response script 2015-01-07 10:29:52 +00:00
Pawel Krawczyk
1d865b2111 make rules stateless to catch existing connections 2015-01-07 10:13:25 +00:00
Pawel Krawczyk
84567f1845 make rules stateless so that new blacklist entry works for existing connections as well 2015-01-06 10:19:16 +00:00
Pawel Krawczyk
3aa2bc36b8 use random name for temp set 2014-12-31 17:39:05 +00:00
Pawel Krawczyk
9a4ceabb01 only create set if it does not exist 2014-12-31 17:34:16 +00:00
Pawel Krawczyk
e974b64c5a mute warning messages when set already exists 2014-12-30 16:08:32 +00:00
Pawel Krawczyk
2b119b9b22 initialize a manual-blacklist set 2014-12-23 12:20:16 +00:00
Pawel Krawczyk
751c0dc403 attempt to create the original set to ensure it exists before swap operation
otherwise it will crash on the very first run on new systems
2014-12-01 12:35:04 +00:00
Pawel Krawczyk
1680830f91 do not destroy temp set on init 2014-11-26 10:34:51 +00:00
Pawel Krawczyk
642905d0ff delete right file name 2014-11-26 10:27:09 +00:00
Pawel Krawczyk
20af55299c wc bug and file name bug 2014-11-26 10:25:03 +00:00
Pawel Krawczyk
4e6da933fa append, not overwrite 2014-11-26 10:21:19 +00:00
Pawel Krawczyk
9678b0d259 use ipset restore feature for faster loads 2014-11-26 10:19:50 +00:00
Pawel Krawczyk
eb5c563fb0 cosmetic 2014-11-24 22:44:55 +00:00
Pawel Krawczyk
ca1ed35f92 forwarding_rule and --compressed not supported 2014-11-24 22:38:37 +00:00
Pawel Krawczyk
b719780fe7 reference input_rule and forward_rule
silence ipset duplicates and curl
2014-11-24 22:36:07 +00:00
Pawel Krawczyk
5a325d5f2b less verbose 2014-11-13 11:33:00 +00:00
Pawel Krawczyk
ede2ed56d6 less verbose 2014-11-13 11:28:42 +00:00
Pawel Krawczyk
f7c09e47af test for no binary 2014-10-02 11:11:35 +01:00
Pawel Krawczyk
edd054d63e use which to find binaries 2014-10-02 11:09:25 +01:00
Pawel Krawczyk
35f142aa4b it does not use uci 2014-10-02 10:59:14 +01:00
Pawel Krawczyk
b1a820f6e1 formatting 2014-10-01 12:47:21 +01:00
Pawel Krawczyk
0c65b715c9 add Linux script 2014-10-01 12:46:26 +01:00
Pawel Krawczyk
e67492b8bf add Bogons 2014-10-01 12:46:16 +01:00
Pawel Krawczyk
2ad1e01924 add content 2014-10-01 12:42:14 +01:00
Pawel Krawczyk
18dab183d2 check for curl 2014-10-01 12:20:45 +01:00
Pawel Krawczyk
e4bc132f20 initial version 2014-10-01 12:14:38 +01:00
Paweł Krawczyk
70bcae47f1 Initial commit 2014-10-01 12:13:57 +01:00