<?xml version="1.0" encoding="iso-8859-1"?>


    <rss version="2.0" xmlns:atom='http://www.w3.org/2005/Atom'>


	<channel>

	<atom:link href='http://forum.softgil.com/infusions/rss_feeds_panel/feeds/weblinks.php' rel='self' type='application/rss+xml' />
	<title>SoftGil Research Firewall Support Forum - Latest Weblinks</title>

	<link>http://forum.softgil.com/</link>

	<description>SoftGil Research Firewall Forums</description>

	 <image>

    <url>http://forum.softgil.com/infusions/rss_feeds_panel/images/phpn_rss.png</url>

    <title>SoftGil Research Firewall Support Forum - Latest Weblinks</title>

    <link>http://forum.softgil.com/</link>

  </image>
<item>

	<title>floppyfw</title>

	<link>http://www.zelow.no/floppyfw/</link>

	<guid isPermaLink='true'>http://www.zelow.no/floppyfw/</guid>

	<description>floppyfw is a router with the advanced firewall-capabilities in Linux that fits on one single floppy disc.&lt;br /&gt;
&lt;br /&gt;
Features:&lt;br /&gt;
Access lists, IP-masquerading (Network Address Translation), connection tracked packet filtering and (quite) advanced routing. Package for traffic shaping is also available.&lt;br /&gt;
Requires only a 386sx or better with two network interface cards, a 1.44MB floppy drive and 12MByte of RAM ( for less than 12M and no FPU, use the 1.0 series. )&lt;br /&gt;
Very simple packaging system. Is used for editors, PPP, VPN, traffic shaping and whatever comes up. (now this is looking even more like LRP (may it rest in peace) but floppyfw is not a fork.)&lt;br /&gt;
Logging through klogd/syslogd, both local and remote.&lt;br /&gt;
Serial support for console over serial port.&lt;br /&gt;
DHCP server and DNS cache for internal networks.&lt;br /&gt;
It will get more features, but only if it is possible to cram it into the one, single diskette. More than one floppy is bloatware... Visits: 174</description>

	<pubDate>Mon, 15 Sep 2008 10:33:12 GMT</pubDate>
	</item>

<item>

	<title>FREESCO</title>

	<link>http://www.freesco.org/</link>

	<guid isPermaLink='true'>http://www.freesco.org/</guid>

	<description>FREESCO was developed in the open source tradition as an alternative to routing products offered by Cisco, 3-Com, Accend, Nortel etc. While all of these companies offer products that are well made, the overhead and overall costs can be expensive.&lt;br /&gt;
&lt;br /&gt;
FREESCO is open source, stable, inexpensive, easy to use, extremely versatile and flexible... and best of all, FREESCO is FREE.&lt;br /&gt;
&lt;br /&gt;
FREESCO is based on the Linux operating system. And incorporates many of the features of other Linux distributions into software that fits onto a single 1.44 meg floppy diskette. With FREESCO, you can configure:&lt;br /&gt;
simple bridge with up to 10 Ethernet segments&lt;br /&gt;
a router with up to 10 Ethernet segments&lt;br /&gt;
a dialup line router&lt;br /&gt;
a leased line router&lt;br /&gt;
an Ethernet router&lt;br /&gt;
a dial-in server with up to 10 modems (with multiport modems).&lt;br /&gt;
a time server&lt;br /&gt;
a dhcp server&lt;br /&gt;
a http server&lt;br /&gt;
a ftp server&lt;br /&gt;
a dns server&lt;br /&gt;
a ssh server&lt;br /&gt;
a print server (requires TCP/IP printing client software)&lt;br /&gt;
FREESCO also incorporates firewalling and NAT, which are resident within the Linux kernel, to help protect you and your network. All of these features can be used in conjunction with each other or individually.&lt;br /&gt;
 Visits: 282</description>

	<pubDate>Mon, 15 Sep 2008 10:14:15 GMT</pubDate>
	</item>

<item>

	<title>RaqCop</title>

	<link>http://www.raqcop.com/</link>

	<guid isPermaLink='true'>http://www.raqcop.com/</guid>

	<description>RaqCop.com was founded in October 2007 to utilize the super stable IPCop Firewall on Sun Cobalt Raq / Symantec VelociRaptor Hardware. IPCop is by far the worlds best Linux firewall distribution and paired with a Sun Cobalt Raq or VelociRaptor, it makes a perfect inexpensive custom router / firewall. Visits: 341</description>

	<pubDate>Tue, 09 Sep 2008 11:20:28 GMT</pubDate>
	</item>

<item>

	<title>ZeroShell - Net Services</title>

	<link>http://www.zeroshell.net/eng/</link>

	<guid isPermaLink='true'>http://www.zeroshell.net/eng/</guid>

	<description>Zeroshell is a small Linux distribution for servers and embedded devices aimed at providing the main network services a LAN requires. It is available in the form of Live CD or Compact Flash image and you can configure and administer it using your web browser. The main features are listed below:&lt;br /&gt;
RADIUS server for providing secure authentication and automatic management of the encryption keys to the Wireless 802.11b, 802.11g and 802.11a networks supporting the 802.1x protocol in the EAP-TLS, EAP-TTLS and PEAP form or the less secure authentication of the client MAC Address; WPA with TKIP and WPA2 with CCMP (802.11i complaint) are supported too; the RADIUS server may also, depending on the username, group or MAC Address of the supplicant, allow the access on a preset 802.1Q VLAN;&lt;br /&gt;
&lt;br /&gt;
Captive Portal to support the web login on wireless and wired networks. Zeroshell acts as gateway for the networks on which the Captive Portal is active and on which the IP addresses (usually belonging to private subnets) are dynamically assigned by the DHCP. A client that accesses this private network must authenticate itself through a web browser using Kerberos 5 username and password before the Zeroshell's firewall allows it to access the public LAN. The Captive Portal gateways are often used to provide authenticated Internet access in the HotSpots in alternative to the 802.1X authentication protocol too complicated to configure for the users. Zeroshell implements the functionality of Captive Portal in native way, without using other specific software as NoCat or Chillispot;&lt;br /&gt;
&lt;br /&gt;
QoS (Quality of Service) management and traffic shaping to control traffic over a congested network. You will be able to guarantee the minimum bandwidth, limit the max bandwidth and assign a priority to a traffic class (useful in latency-sensitive network applications like VoIP). The previous tuning can be applied on Ethernet Interfaces, VPNs, bridges and VPN bondings. It is possible to classify the traffic by using the Layer 7 filters that allow the Deep Packet Inspection (DPI) which can be useful to shape VoIP and P2P applications;&lt;br /&gt;
&lt;br /&gt;
HTTP Proxy server which is able to block the web pages containing virus. This feature is implemented using the ClamAV antivirus and HAVP proxy server. The proxy server works in transparent proxy mode, in which, you don't need to configure the web browsers of the users to use it, but the http requests will be automatically redirected to the proxy;&lt;br /&gt;
&lt;br /&gt;
Wireless Access Point mode with Multiple SSID and VLAN support by using WiFi network cards based on the Atheros chipsets. In other words, a Zeroshell box with one of such WiFi cards could become a IEEE 802.11a/b/g Access Point providing reliable authentication and dynamic keys exchange by 802.1X and WPA protocols. Of course, the authentication takes place using EAP-TLS and PEAP over the integrated RADIUS server;&lt;br /&gt;
&lt;br /&gt;
Host-to-lan VPN with L2TP/IPsec in which L2TP (Layer 2 Tunneling Protocol) authenticated with Kerberos v5 username and password is encapsulated within IPsec authenticated with IKE that uses X.509 certificates;&lt;br /&gt;
&lt;br /&gt;
Lan-to-lan VPN with encapsulation of Ethernet datagrams in SSL/TLS tunnel, with support for 802.1Q VLAN and configurable in bonding for load balancing (band increase) or fault tolerance (reliability increase);&lt;br /&gt;
&lt;br /&gt;
Router with static and dynamic routes (RIPv2 with MD5 or plain text authentication and Split Horizon and Poisoned Reverse algorithms);&lt;br /&gt;
&lt;br /&gt;
802.1d bridge with Spanning Tree protocol to avoid loops even in the presence of redundant paths;&lt;br /&gt;
&lt;br /&gt;
802.1Q Virtual LAN (tagged VLAN);&lt;br /&gt;
&lt;br /&gt;
Firewall Packet Filter and Stateful Packet Inspection (SPI) with filters applicable in both routing and bridging on all type of interfaces including VPN and VLAN;&lt;br /&gt;
&lt;br /&gt;
It is possible to reject or shape P2P File Sharing traffic by using IPP2P iptables module in the Firewall and QoS Classifier;&lt;br /&gt;
&lt;br /&gt;
NAT to use private class LAN addresses hidden on the WAN with public addresses;&lt;br /&gt;
&lt;br /&gt;
TCP/UDP port forwarding (PAT) to create Virtual Servers. This means that real server cluster will be seen with only one IP address (the IP of the virtual server) and each request will be distributed with Round Robin algorithm to the real servers;&lt;br /&gt;
&lt;br /&gt;
Multizone DNS server with automatic management of the Reverse Resolution in-addr.arpa;&lt;br /&gt;
&lt;br /&gt;
Multi subnet DHCP server with the possibility to fix IP depending on client's MAC address;&lt;br /&gt;
&lt;br /&gt;
PPPoE client for connection to the WAN via ADSL, DSL and cable lines (requires a suitable MODEM);&lt;br /&gt;
&lt;br /&gt;
Dynamic DNS client used to easily reach the host on WAN even when the IP is dynamic;&lt;br /&gt;
&lt;br /&gt;
NTP (Network Time Protocol) client and server for keeping host clocks synchronized;&lt;br /&gt;
&lt;br /&gt;
Syslog server for receiving and cataloging the system logs produced by the remote hosts including Unix systems, routers, switches, WI-FI access points, network printers and others compatible with the syslog protocol;&lt;br /&gt;
&lt;br /&gt;
Kerberos 5 authentication using an integrated KDC and cross-authentication between realms;&lt;br /&gt;
&lt;br /&gt;
LDAP, NIS and RADIUS authorization;&lt;br /&gt;
&lt;br /&gt;
X509 certification authority for issuing and managing electronic certificates;&lt;br /&gt;
&lt;br /&gt;
Unix and Windows Active Directory interoperability using LDAP and Kerberos 5 cross realm authentication. Visits: 509</description>

	<pubDate>Mon, 04 Aug 2008 21:48:11 GMT</pubDate>
	</item>

<item>

	<title>calamaris - Calamaris Proxy Report Generator add-on</title>

	<link>http://calamaris.advproxy.net/</link>

	<guid isPermaLink='true'>http://calamaris.advproxy.net/</guid>

	<description>Calamaris v2 is a logfile parser and report generator, originally written by Cord Beermann and distributed under the GNU Public License. This add-on integrates Calamaris into the IPCop or SmoothWall GUI and gives you the ability to create customized, detailed, menu driven Proxy reports. Visits: 212</description>

	<pubDate>Sun, 30 Mar 2008 19:38:15 GMT</pubDate>
	</item>

<item>

	<title>advproxy - The Advanced Web Proxy add-on for IPCop and SmoothWall</title>

	<link>http://www.advproxy.net/</link>

	<guid isPermaLink='true'>http://www.advproxy.net/</guid>

	<description>Advanced Proxy is an add-on module for the popular Linux based firewall distributions IPCop and SmoothWall, extending their web proxy functionality with a lot of versatile and useful additional features. Visits: 196</description>

	<pubDate>Sun, 30 Mar 2008 19:37:27 GMT</pubDate>
	</item>

<item>

	<title>Linux LiveCD Router Firewall</title>

	<link>http://www.wifi.com.ar/english/cdrouter/</link>

	<guid isPermaLink='true'>http://www.wifi.com.ar/english/cdrouter/</guid>

	<description>Speed-up your Internet connection ! Linux LiveCD Router allows you to share, firewall and optimize your broadband connection. You can use DSL, ADSL, Cable Modem, T1, Fixed IPs, Dial-Up, WiFi and more. Includes traffic priority settings for VoIP and other apps. Can avoid ISP traffic limiting.&lt;br /&gt;
&lt;br /&gt;
Features:&lt;br /&gt;
Share and Firewall your broadband or dedicated Internet connection&lt;br /&gt;
Includes Firewall Shorewall and Masquerading (NAT)&lt;br /&gt;
Does not require any installation. It is a LiveCD, your computer simply boots straight from the CD (or flash disk). Does not require a hard disk&lt;br /&gt;
Supports DSL, Cablemodem, Fixed IP and Dial-Up&lt;br /&gt;
Traffic Control, QoS WonderShaper&lt;br /&gt;
DHCP Client and Server&lt;br /&gt;
Remote SSH administration&lt;br /&gt;
Secure Internet Access using OpenVPN&lt;br /&gt;
Can balance 2 internet connections (multi ISP)&lt;br /&gt;
Ideal for high speed (5 mbps+) ADSL lines - since most WAN ports on integrated routers do not support 5 mbps+ speeds&lt;br /&gt;
Use standard and low cost computer, networking and wifi hardware&lt;br /&gt;
Linux Software compatible with Windows and Mac Networks&lt;br /&gt;
Boot from USB flash&lt;br /&gt;
 Visits: 414</description>

	<pubDate>Thu, 20 Mar 2008 12:09:22 GMT</pubDate>
	</item>

<item>

	<title>IPFire - The Free Firewall for your Home or SOHO</title>

	<link>http://ipfire.org/</link>

	<guid isPermaLink='true'>http://ipfire.org/</guid>

	<description>IPFire is a Linux based firewall distribution with a lot of extras. Development base of the new release 2.1 was Linux from Scratch, a stable and flexible guide to build a Linux distribution. According to this the system was set up and tighten up with nice extras like Asterisk PBX, Samba, CUPS and many more...&lt;br /&gt;
&lt;br /&gt;
So you can get anything out of IPFire you can imagine. Without any addons installed it is an ultra-fast firewall but can also be a full-featured home server. It's up to you what you want. Check it out...&lt;br /&gt;
&lt;br /&gt;
IPFire is based on IPCop and Smoothwall.&lt;br /&gt;
 Visits: 457</description>

	<pubDate>Thu, 20 Mar 2008 11:51:41 GMT</pubDate>
	</item>

<item>

	<title>Untangle - Open Source Network Gateway</title>

	<link>http://www.untangle.com/</link>

	<guid isPermaLink='true'>http://www.untangle.com/</guid>

	<description>Open Source Network Gateway. Untangle is the free &amp; open source alternative to Sonicwall. In addition to the basics (Firewall, VPN, IPS &amp; routing), Untangle makes it easier to block spam, spyware, viruses, phishing, porn, gambling, MySpace, Facebook, IM, peer-2-peer &amp; much, much more.&lt;br /&gt;
&quot;Best Security Solution&quot; - LinuxWorld 2007&lt;br /&gt;
Runs at the gateway... No clients to install!&lt;br /&gt;
Easy to use: Intuitive GUI, logging, reporting &amp; automatic signature updates&lt;br /&gt;
Installs on standard Intel/AMD hardware&lt;br /&gt;
Lively forums &amp; a great Wiki&lt;br /&gt;
Open Source &amp; Free under the GPLv2. Visits: 469</description>

	<pubDate>Wed, 02 Jan 2008 12:04:19 GMT</pubDate>
	</item>

<item>

	<title>updatexlrator - Update Accelerator add-on for IPCop</title>

	<link>http://update-accelerator.advproxy.net/</link>

	<guid isPermaLink='true'>http://update-accelerator.advproxy.net/</guid>

	<description> The Update Accelerator caches files from update sites automatically at the first request. All subsequent downloads of these files from other clients will be processed with LAN speed.&lt;br /&gt;
&lt;br /&gt;
Even though the standard Web Proxy cache does almost the same job, there are important differences between the Web Proxy cache and the Update Accelerator cache.&lt;br /&gt;
&lt;br /&gt;
For example, it would be difficult to store, reliably, a Service Pack with a size of about 300MB in the Web Proxy cache. Unlike a Web Proxy with its internal cache and uncontrollable results, the Update Accelerator works rather in a similar way to a File Server - dead reliable and independent of any Proxy cache size or replacement strategy.  Visits: 200</description>

	<pubDate>Sun, 16 Sep 2007 11:04:59 GMT</pubDate>
	</item>

</channel>
	</rss>
