From: Kevin Z. <kev...@gm...> - 2015-06-30 13:01:44
|
On 06/30/2015 17:01, Willem Jan Withagen wrote: > I'm doing more or less the same but using the NULL firewall... and then > use the option -s to tell it what to really do.... > > /usr/local/sbin/sshguard -e /usr/local/sbin/sshguard-ipfwtable > > Does the above mean that you are going to "kill" this facility for the > time being? No. Among other issues, I need to fix this before merging it back in. Since it looks like you're using IPFW, you're more than welcome (and encouraged!) to take a look at the work in progress in the 'newfw' branch. Feedback is welcome! If you also happen to run FreeBSD, and you're feeling adventurous, you can also try the 'capsicum' branch which adds preliminary sandboxing support using Capsicum. Many things are broken, namely logsucker, syslog logging, and probably procauth, but it appears to work. Thanks, Kevin Zheng -- Kevin Zheng kev...@gm... | ke...@kd... | PGP: 0xC22E1090 |