<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title>firewall</title>
    <link rel="self" type="application/atom+xml" href="https://links.biapy.com/guest/tags/181/feed"/>
    <updated>2026-09-21T19:05:11+00:00</updated>
    <id>https://links.biapy.com/guest/tags/181/feed</id>
            <entry>
            <id>https://links.biapy.com/links/13667</id>
            <title type="text"><![CDATA[Varnish Orca Artifact Firewall]]></title>
            <link rel="alternate" href="https://www.varnish-software.com/products/software-supply-chain/varnish-artifact-firewall/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/13667"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Varnish Orca is a Virtual Registry Manager: a fast pull-through cache for artifact registries.
Control which packages reach your developers, pipelines, and agents.

Deploy it close to your developers and CI/CD pipelines to reduce build times and egress costs.

- [Varnish Orca @ GitHub](https://github.com/varnish/orca).

Related contents:

- [Varnish Artifact Firewall : contrôler l&amp;#039;entrée des dépendances @ DevSecOps :fr:](https://blog.stephane-robert.info/docs/securiser/supply-chain/artifact-firewall/).]]>
            </summary>
            <updated>2026-08-17T09:26:09+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/13538</id>
            <title type="text"><![CDATA[ADR: Agentic AI Detection and Response]]></title>
            <link rel="alternate" href="https://github.com/uber/ADR" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/13538"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.

ADR (Agentic AI Detection and Response) is an enterprise security system for AI agents. It helps organizations secure employee-facing agents such as Cursor, Claude Code, and Codex, as well as customer-facing agents such as AI support agents.]]>
            </summary>
            <updated>2026-08-05T11:46:32+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/13490</id>
            <title type="text"><![CDATA[iron.sh]]></title>
            <link rel="alternate" href="https://docs.iron.sh/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/13490"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[An egress firewall for untrusted workloads.

iron-proxy is a single-binary egress firewall for workloads you don&amp;#039;t fully trust. It enforces an allowlist on outbound HTTP and HTTPS, holds credentials so the workload never sees the real value, and records every request as structured JSON.

- [iron.sh @ GitHub](https://github.com/ironsh/iron-proxy).]]>
            </summary>
            <updated>2026-08-03T06:19:55+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/13234</id>
            <title type="text"><![CDATA[Maltrail]]></title>
            <link rel="alternate" href="https://github.com/stamparm/maltrail" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/13234"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Malicious traffic detection system.

Maltrail is a malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails, along with static trails compiled from various AV reports and custom user defined lists, where a trail can be anything from a domain name (e.g. zvpprsensinaix.com for Banjori malware), URL (e.g. hXXp://109.162.38.120/harsh02.exe for known malicious executable), IP address (e.g. 185.130.5.231 for known attacker) or HTTP User-Agent header value (e.g. sqlmap for automatic SQL injection and database takeover tool). Also, it uses (optional) advanced heuristic mechanisms that can help in the discovery of unknown threats (e.g. new malware).]]>
            </summary>
            <updated>2026-07-07T05:35:38+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/12849</id>
            <title type="text"><![CDATA[Claw Patrol]]></title>
            <link rel="alternate" href="https://clawpatrol.dev/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/12849"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[The security firewall for agents.

Give agents prod access and still sleep easy

Claw Patrol holds agent credentials, parses their traffic at the wire, and gates actions they take with rules you write, all while keeping an audit log of every action.

- [Claw Patrol @ GitHub](https://github.com/denoland/clawpatrol).]]>
            </summary>
            <updated>2026-05-25T11:52:59+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/12699</id>
            <title type="text"><![CDATA[Pipelock]]></title>
            <link rel="alternate" href="https://pipelab.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/12699"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Open-source agent firewall for MCP and AI agent egress

Pipelock enforces MCP, HTTP, and WebSocket egress at the network boundary and produces verifiable audit evidence for every inspected action.

- [Pipelock @ GitHub](https://github.com/luckyPipewrench/pipelock).

Related contents:

- [Pipelock: Open-source AI agent firewall @ Help Net Security](https://www.helpnetsecurity.com/2026/05/04/pipelock-open-source-ai-agent-firewall/).]]>
            </summary>
            <updated>2026-05-14T10:37:51+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/12493</id>
            <title type="text"><![CDATA[Little Snitch]]></title>
            <link rel="alternate" href="https://obdev.at/products/littlesnitch/index.html" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/12493"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Network Monitor and Application Firewall for macOS.

 The Little Snitch Network Monitor shows you where your Mac connects to on the Internet. You decide what you want to allow or deny. 

- [Little Snitch for Linux @ Objective Development](https://obdev.at/products/littlesnitch-linux/index.html).
- [Little Snitch for Linux @ GitHub](https://github.com/obdev/littlesnitch-linux).]]>
            </summary>
            <updated>2026-04-09T11:51:38+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/12020</id>
            <title type="text"><![CDATA[MacNoise]]></title>
            <link rel="alternate" href="https://github.com/0xv1n/macnoise" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/12020"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Extensible MacOS system telemetry generator.

MacNoise is an extensible and modular macOS system telemetry generation framework. It generates real system events (network connections, file writes, process spawns, plist mutations, TCC permission probes, and more) so security teams can validate that their EDR, SIEM, and firewall tooling detects what it is supposed to detect.

Related contents:

- [Introducing MacNoise! @ 0xv1n](https://0xv1n.github.io/posts/macnoise/).
- [\#66 @ Erreur 403 :fr:](https://newsletter.erreur403.fr/p/erreur-403-66).]]>
            </summary>
            <updated>2026-03-05T12:11:52+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/11784</id>
            <title type="text"><![CDATA[SysWarden]]></title>
            <link rel="alternate" href="https://syswarden.io/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/11784"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[SysWarden is a tool based on the Data-Shield IPv4 Blocklists Community, Wazuh and Fail2ban that blocks up to 99% of noisy, disruptive, and malicious IP addresses and focuses on real signals.

- [SysWarden @ GitHub](https://github.com/duggytuxy/syswarden).

Related contents:

- [Newsletter du 02 Février 2026 @ RudeOps :fr:](https://www.rudeops.com/newsletter/2026-02-02-rudeops-newsletter/).
- [SysWarden : protéger rapidement un serveur Linux exposé @ DevSecOps :fr:](https://blog.stephane-robert.info/docs/securiser/reseaux/syswarden/).]]>
            </summary>
            <updated>2026-06-29T05:31:17+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/11783</id>
            <title type="text"><![CDATA[Data-Shield IPv4 Blocklist Community]]></title>
            <link rel="alternate" href="https://duggytuxy.github.io/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/11783"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Data-Shield IPv4 Blocklist Community provides an official, curated registry of IPv4 addresses identified as malicious. Updated continuously, this resource offers vital threat intelligence to bolster your Firewall and WAF instances,... 

- [Data‑Shield IPv4 Blocklist Community @ GitHub](https://github.com/duggytuxy/Data-Shield_IPv4_Blocklist).

Related contents:

- [Newsletter du 02 Février 2026 @ RudeOps :fr:](https://www.rudeops.com/newsletter/2026-02-02-rudeops-newsletter/).
- [Digest \#202: Terraform Claude Skills, FinOps FOCUS 1.2, AI Fatigue for Cloud Engineers, and MCP for Web Data Extraction @ DevOps Bulletin](https://www.devopsbulletin.com/p/digest-202-terraform-claude-skills).
- [Data-Shield - La blocklist qui vire les IPs pourries @ Korben :fr:](https://korben.info/data-shield-ipv4-blocklist.html).]]>
            </summary>
            <updated>2026-04-07T06:55:57+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/11677</id>
            <title type="text"><![CDATA[ProcNetBlocker]]></title>
            <link rel="alternate" href="https://autoclose.net/procnetblocker.html" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/11677"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Block Unauthorized Network Communication via Command Line, Instantly. Instantly Block Network Access by PID/EXE.

 ProcNetBlocker (Process Network Blocker) is a lightweight Windows command-line utility designed for system administrators, developers, and power users who need granular, real-time control over application network access. Stop unauthorized communication, sandbox suspicious programs, or manage bandwidth—all with a simple command. 

Related contents:

- [ProcNetBlocker – Coupez le réseau à n’importe quel processus Windows en une commande @ Korben :fr:](https://korben.info/procnetblocker-bloquer-reseau-processus-windows-cl.html).]]>
            </summary>
            <updated>2026-02-02T08:48:32+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/11225</id>
            <title type="text"><![CDATA[iocaine]]></title>
            <link rel="alternate" href="https://iocaine.madhouse-project.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/11225"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[the deadliest poison known to AI.

This software is not made for making the Crawlers go away. It is an aggressive defense mechanism that tries its best to take the blunt of the assault, serve them garbage, and keep them off of upstream resources. Even though a lot of work went into making iocaine efficient, and nigh invisible for the legit visitor, it is an aggressive defender nevertheless, and will require a few resources - a whole lot less than if you’d let the Crawlers run rampant, though.

- [iocaine &amp;#039;s git](https://git.madhouse-project.org/iocaine/iocaine).

Related contents:

- [Guarding My Git Forge Against AI Scrapers @ VulpineCitrus](https://vulpinecitrus.info/blog/guarding-git-forge-ai-scrapers/).]]>
            </summary>
            <updated>2025-12-12T13:43:40+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/10522</id>
            <title type="text"><![CDATA[Fox&amp;#039;s High Speed TLS Signature Filtering]]></title>
            <link rel="alternate" href="https://github.com/FoxMoss/fox-xdp/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/10522"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[High speed TLS signature filtering.

Instead of taking the full JA4 hash to fingerprint traffic which is slow to calculate and is hard to implement in a BPF filter, I take a Jenkins hash of the sorted supported ciphers in any given TLS request. To similar effect as JA4, keeping fingerprinting usefulness. Switching to a non-cryptographic hashing algorithm is okay here because any given attacker with enough skill could replicate the ciphers of another client, so any hash reversing would be useless or at best force the attacker to implement a different amount of hashes.

Related contents:

- [How I Block All 26 Million Of Your Curl Requests @ Fox Ellison-Taylor&amp;#039;s Blog](https://foxmoss.com/blog/packet-filtering/).]]>
            </summary>
            <updated>2025-10-06T05:30:22+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/10495</id>
            <title type="text"><![CDATA[ai.robots.txt]]></title>
            <link rel="alternate" href="https://github.com/ai-robots-txt/ai.robots.txt" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/10495"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A list of AI agents and robots to block. 

This list contains AI-related crawlers of all types, regardless of purpose. We encourage you to contribute to and implement this list on your own site. See information about the listed crawlers and the FAQ.

Related contents:

- [\#119: Les news sur le développement web et l&amp;#039;IA pour septembre 2025 RC2 @ Double Slash :fr:](https://double-slash.dev/podcasts/news-sept25-rc2/).
- [Comment bloquer les crawlers IA qui pillent votre site sans vous demander la permission ? @ Korben :fr:](https://korben.info/bloquer-crawlers-ia-robots-txt-htaccess-nginx.html).]]>
            </summary>
            <updated>2025-12-16T10:41:09+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/65</id>
            <title type="text"><![CDATA[Rethink]]></title>
            <link rel="alternate" href="https://rethinkdns.com/app" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/65"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[DNS + Firewall App for Android 6+.

Rethink DNS + Firewall is the easiest way to monitor app activity, circumvent Internet censorship, block ads and trackers on your Android device.

- [Rethink @ GitHub](https://github.com/celzero/rethink-app).

Related contents:

- [RethinkDNS - Booster de vie privée sur Android @ Korben :fr:](https://korben.info/rethinkdns-firewall-android-privacy-revolution.html).]]>
            </summary>
            <updated>2025-09-17T07:07:21+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/283</id>
            <title type="text"><![CDATA[OpenGFW]]></title>
            <link rel="alternate" href="https://gfw.dev/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/283"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[OpenGFW is a flexible, easy-to-use, open source implementation of GFW (Great Firewall of China) on Linux.

OpenGFW is your very own DIY Great Firewall of China, available as a flexible, easy-to-use open source program on Linux. Why let the powers that be have all the fun? It&amp;#039;s time to give power to the people and democratize censorship. Bring the thrill of cyber-sovereignty right into your home router and start filtering like a pro - you too can play Big Brother.

- [OpenGFW @ GitHub](https://github.com/apernet/OpenGFW).]]>
            </summary>
            <updated>2025-11-12T16:24:51+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/1059</id>
            <title type="text"><![CDATA[OPNManager]]></title>
            <link rel="alternate" href="https://github.com/Red-Swingline/OPNManager" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/1059"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[OPNManager is a streamlined, user-friendly application designed to simplify the management of OPNsense firewalls. Built with Tauri and SvelteKit, this cross-platform app provides an intuitive interface for users who need a more simplified alternative to the standard OPNsense web interface.]]>
            </summary>
            <updated>2025-08-28T18:54:45+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/1218</id>
            <title type="text"><![CDATA[Anubis]]></title>
            <link rel="alternate" href="https://anubis.techaro.lol/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/1218"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Anubis: self hostable scraper defense software.

Weighs the soul of incoming HTTP requests using proof-of-work to stop AI crawlers.

- [Anubis @ GitHub](https://github.com/TecharoHQ/anubis).

Related contents:

- [Block AI scrapers with Anubis @ Xe](https://xeiaso.net/blog/2025/anubis/).
- [Episode 146: When AI Attacks @ Self-Hosted](https://selfhosted.show/146).
- [The surreal joy of having an overprovisioned homelab @ Xe](https://xeiaso.net/talks/2025/surreal-joy-homelab/).
- [Open source devs are fighting AI crawlers with cleverness and vengeance @ TechCrunch](https://techcrunch.com/2025/03/27/open-source-devs-are-fighting-ai-crawlers-with-cleverness-and-vengeance/).
- [\[Anubis\] Utiliser la preuve de travail pour bloquer les robots @ Pofilo.fr :fr:](https://www.pofilo.fr/post/2025/04/14-mise-en-place-anubis/).
- [The Day Anubis Saved Our Websites From a DDoS Attack @ fabulous.systems](https://fabulous.systems/posts/2025/05/anubis-saved-our-websites-from-a-ddos-attack/).
- [Protéger tous ses sites avec Anubis @ Dryusdan.space 🚀](https://dryusdan.space/proteger-tous-ses-sites-avec-anubis).
- [A thought on JavaScript &amp;quot;proof of work&amp;quot; anti-scraper systems @ Wandering Thoughts](https://utcc.utoronto.ca/~cks/space/blog/web/JavaScriptScraperObstacles).
- [Anubis - Protégez votre site web contre les scrapers IA en moins de 15 minutes @ Korben :fr:](https://korben.info/anubis-protection-site-web-bots-ia.html).
- [Ask HN: How to stop an AWS bot sending 2B requests/month? @ Hacker News](https://news.ycombinator.com/item?id=45613567).
- [Comment protéger vos serveurs et lutter efficacement contre les crawlers d’IA @ Bearstech :fr:](https://bearstech.com/societe/blog/comment-proteger-vos-serveurs-et-lutter-efficacement-contre-les-crawlers-dia).]]>
            </summary>
            <updated>2025-10-30T06:49:52+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/1705</id>
            <title type="text"><![CDATA[FireHOL]]></title>
            <link rel="alternate" href="https://firehol.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/1705"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Linux firewalling and traffic shaping for humans.

FireHOL is a language (and a program to run it) which builds secure, stateful firewalls from easy to understand, human-readable configurations. The configurations stay readable even for very complex setups.

- [FireHOL @ GitHub](https://github.com/firehol/firehol).
- [FireHOL IP Lists](https://iplists.firehol.org/).
- [FireHOL IP Lists @ GitHub](https://github.com/firehol/blocklist-ipsets).

Related contents:

- [FireHOL - La protection IP ultime pour votre pare-feu @ Korben :fr:](https://korben.info/firehol-protection-ip-pare-feu.html).]]>
            </summary>
            <updated>2025-08-28T20:40:43+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/2272</id>
            <title type="text"><![CDATA[DynFi Manager]]></title>
            <link rel="alternate" href="https://dynfi.com/en/dynfi-manager/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/2272"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[The only centralized manager for Open Source firewalls

- Simply manage more firewalls
- Huge gain in productivity and speed
- Automate certain administrative tasks
- All your firewalls are accessible in 1 click
- Auto-connect your firewalls to DynFi Manager
- pfSense® and OPNsense® compatible manager

Source: [Administration centralisée des pare-feux pfSense et OPNsense avec Dynfi Manager @ IT-Connect :fr:](https://www.it-connect.fr/administration-centralisee-des-pare-feux-pfsense-et-opnsense-avec-dynfi-manager/).]]>
            </summary>
            <updated>2025-08-28T22:14:38+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/2498</id>
            <title type="text"><![CDATA[Zenarmor]]></title>
            <link rel="alternate" href="https://www.zenarmor.com/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/2498"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Proudly Introducing the era of Instant Firewalls!

Get instant security whenever and wherever you have network access!]]>
            </summary>
            <updated>2025-08-28T22:53:01+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/4094</id>
            <title type="text"><![CDATA[CrowdSec]]></title>
            <link rel="alternate" href="https://www.crowdsec.net/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/4094"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[The next-gen open source, crowd-powered &amp;amp; dynamic firewall.

Curated Threat Intelligence Powered by the Crowd. Maximize your security investments
with ultra-curated data.

- [CrowdSec @ GitHub](https://github.com/crowdsecurity/crowdsec).
- [277 - Défense communautaire - Julien Devouassoud @ \&amp;lt;ifttd\&amp;gt; :fr:](https://www.ifttd.io/episodes/defense-communautaire).]]>
            </summary>
            <updated>2025-08-29T03:18:59+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/4344</id>
            <title type="text"><![CDATA[pfSense]]></title>
            <link rel="alternate" href="https://www.pfsense.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/4344"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[World&amp;#039;s Most Trusted Open Source Firewall. 

The pfSense project is a free network firewall distribution, based on the FreeBSD operating system with a custom kernel and including third party free software packages for additional functionality. pfSense software, with the help of the package system, is able to provide the same functionality or more of common commercial firewalls, without any of the artificial limitations. It has successfully replaced every big name commercial firewall you can imagine in numerous installations around the world, including Check Point, Cisco PIX, Cisco ASA, Juniper, Sonicwall, Netgear, Watchguard, Astaro, and more.
 
- [PfSense et Squid : ajouter le filtrage par catégories avec Squid Guard @ IT Connect :fr:](https://www.it-connect.fr/pfsense-et-squid-ajouter-le-filtrage-par-categories-avec-squid-guard/).
- [pfSense Configuration Guide - Zero to Hero! @ Jim&amp;#039;s Garage&amp;#039;s YouTube](https://www.youtube.com/watch?v=he3ENpMLMsc).
- [The First Services I Always Spin Up in Any Home Lab @ VirtualizationHowto](https://www.youtube.com/watch?v=WocNYt7PprM).]]>
            </summary>
            <updated>2025-10-06T06:53:46+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/4693</id>
            <title type="text"><![CDATA[Chisel]]></title>
            <link rel="alternate" href="https://github.com/jpillora/chisel" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/4693"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A fast TCP/UDP tunnel over HTTP.

Chisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. Single executable including both client and server. Written in Go (golang). Chisel is mainly useful for passing through firewalls, though it can also be used to provide a secure endpoint into your network.]]>
            </summary>
            <updated>2025-08-29T04:58:58+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/4726</id>
            <title type="text"><![CDATA[Nitrokey]]></title>
            <link rel="alternate" href="https://www.nitrokey.com/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/4726"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Secure your digital life.

Open Source IT-Security Hardware.]]>
            </summary>
            <updated>2025-08-29T05:04:53+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/5573</id>
            <title type="text"><![CDATA[IPFire]]></title>
            <link rel="alternate" href="https://www.ipfire.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/5573"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[IPFire is a dedicated firewall that can be installed in any network - from data center down to your home. It is secure, fast and very versatile. Besides from being a stateful inspection firewall it can work as a VPN gateway, analyze data packets with its Intrusion Prevention System (IPS), and comes with many Add-ons that extend its functionality further.

Related contents:

- [A Simpler Alternative to OPNSense &amp;amp; pfSense? @ Jim&amp;#039;s Garage&amp;#039;s YouTube](https://www.youtube.com/watch?v=qjPyh2FsGeM).]]>
            </summary>
            <updated>2026-09-14T06:13:50+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/5732</id>
            <title type="text"><![CDATA[Teleport]]></title>
            <link rel="alternate" href="https://goteleport.com/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/5732"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Identity-Native Infrastructure Access. Faster. More Secure.

Teleport replaces the #1 source of data breaches — secrets — with true identity to deliver phishing-proof zero trust access for every engineer and service connected to your global infrastructure.

Teleport is the easiest, most secure way to access all your infrastructure. Teleport is an identity-aware, multi-protocol access proxy which understands SSH, HTTPS, RDP, Kubernetes API, MySQL, MongoDB and PostgreSQL wire protocols.

- [Teleport @ GitHub](https://github.com/gravitational/teleport).

Related contents:

- [Sécuriser l&amp;#039;accès à vos serveurs avec Teleport @ DevSecOps :fr:](https://blog.stephane-robert.info/docs/securiser/acces/teleport/).]]>
            </summary>
            <updated>2025-08-29T07:52:24+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/5787</id>
            <title type="text"><![CDATA[Red Flag Domains]]></title>
            <link rel="alternate" href="https://red.flag.domains/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/5787"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Red Flag Domains are lists of very recently registered probably malicious domain names in french TLDs. Data are published for security purposes only, and can be used to feed an automatic filtering solution like proxy. More details here.]]>
            </summary>
            <updated>2025-08-29T08:01:36+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6107</id>
            <title type="text"><![CDATA[MySafeIp]]></title>
            <link rel="alternate" href="https://github.com/yvguim/mysafeip" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6107"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[MySafeIp is a web app acting as a trusted IP source for firewalls.
With it, I don&amp;#039;t have to open my own services (Nextcloud, bitwarden, etc...) worldwilde. Just me, my family and friends can use those services easily. Family and friends don&amp;#039;t even need an account to mysafeip with instant link feature.]]>
            </summary>
            <updated>2025-08-29T08:54:51+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6551</id>
            <title type="text"><![CDATA[Portmaster]]></title>
            <link rel="alternate" href="https://github.com/safing/portmaster" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6551"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[🏔 Love Freedom - ❌ Block Mass Surveillance.
Portmaster is a free and open-source application firewall that does the heavy lifting for you. Restore privacy and take back control over all your computer&amp;#039;s network activity.]]>
            </summary>
            <updated>2025-12-04T06:53:31+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6702</id>
            <title type="text"><![CDATA[OWASP Coraza WAF]]></title>
            <link rel="alternate" href="https://coraza.io/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6702"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Enterprise-grade open source web application firewall library.
Coraza is an open source, high performance, Web Application Firewall ready to protect your beloved applications.

- [Coraza @ GitHub](https://github.com/corazawaf/coraza).]]>
            </summary>
            <updated>2025-08-29T10:33:52+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6747</id>
            <title type="text"><![CDATA[IPsum]]></title>
            <link rel="alternate" href="https://github.com/stamparm/ipsum" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6747"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Daily feed of bad IPs (with blacklist hit scores).
IPsum is a threat intelligence feed based on 30+ different publicly available lists of suspicious and/or malicious IP addresses. All lists are automatically retrieved and parsed on a daily (24h) basis and the final result is pushed to this repository. List is made of IP addresses together with a total number of (black)list occurrence (for each). Greater the number, lesser the chance of false positive detection and/or dropping in (inbound) monitored traffic. Also, list is sorted from most (problematic) to least occurent IP addresses.]]>
            </summary>
            <updated>2025-08-29T10:41:53+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6838</id>
            <title type="text"><![CDATA[SimpleWall]]></title>
            <link rel="alternate" href="https://github.com/henrypp/simplewall" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6838"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

The lightweight application is less than a megabyte, and it is compatible with Windows 7 SP1 and higher operating systems. You can download either the installer or portable version. For correct working you are require administrator rights.]]>
            </summary>
            <updated>2026-01-06T07:46:28+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/6863</id>
            <title type="text"><![CDATA[Suricata]]></title>
            <link rel="alternate" href="https://suricata.io/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/6863"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Suricata is a high performance, open source network analysis and threat detection software used by most private and public organizations, and embedded by major vendors to protect their assets.]]>
            </summary>
            <updated>2025-08-29T11:02:01+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/7181</id>
            <title type="text"><![CDATA[LuLu]]></title>
            <link rel="alternate" href="https://objective-see.com/products/lulu.html" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/7181"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Mac OS X firewall]]>
            </summary>
            <updated>2025-08-29T11:54:32+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/7396</id>
            <title type="text"><![CDATA[OpenSnitch]]></title>
            <link rel="alternate" href="https://github.com/evilsocket/opensnitch" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/7396"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[OpenSnitch is a GNU/Linux port of the Little Snitch application firewall.]]>
            </summary>
            <updated>2025-08-29T12:30:51+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/8016</id>
            <title type="text"><![CDATA[OPNsense]]></title>
            <link rel="alternate" href="https://opnsense.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/8016"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[pfsense fork - Your next Open Source Firewall !
Secure Your Network with ease.
From Virtual Private Networking to Intrusion Detection, Best in class, FREE Open Source Project.

- [OPNsense @ GitHub](https://github.com/opnsense/core).

Related contents:

- [How to Configure an OPNsense Dashboard @ bsmithio](https://www.bsmithio.com/post/opnsense-dashboard/).
- [Introduction à OPNsense : comment installer ce firewall ? @ IT-Connect :fr:](https://www.it-connect.fr/tuto-installer-et-configurer-opnsense/).
- [Une façon créative de bloquer les indésirables @ Richard Dern :fr:](https://richard-dern.fr/interets/informatique/2026/03/08/une-facon-creative-de-bloquer-les-indesirables/).
- [Comprendre OPNsense : le pare-feu open source @ DevSecOps :fr:](https://blog.stephane-robert.info/docs/securiser/reseaux/opnsense/comprendre/).
- [OPNsense Transparent Filtering Bridge (v26.1) @ Home Network Guy&amp;#039;s YouTube](https://www.youtube.com/watch?v=ZCDXNxDhrIQ).
- [your home router STILL SUCKS!! (use OPNsense instead) @ NetworkChuck&amp;#039;s YouTube](https://www.youtube.com/watch?v=a3RI4DjFBzw).]]>
            </summary>
            <updated>2026-08-17T06:58:34+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/8116</id>
            <title type="text"><![CDATA[IsoWall]]></title>
            <link rel="alternate" href="https://github.com/robertdavidgraham/isowall" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/8116"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[This is a mini-firewall that completely isolates a target device from the local network. This is for allowing infected machines Internet access, but without endangering the local network.]]>
            </summary>
            <updated>2025-08-29T14:29:58+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/8179</id>
            <title type="text"><![CDATA[Springbok]]></title>
            <link rel="alternate" href="https://github.com/conix-security/springbok" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/8179"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A tool for analyzing firewall rules]]>
            </summary>
            <updated>2025-08-29T14:41:03+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/8808</id>
            <title type="text"><![CDATA[pfSense Open Source Firewall Distribution - Home]]></title>
            <link rel="alternate" href="http://www.pfsense.org/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/8808"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[pfSense is a free, open source customized distribution of FreeBSD tailored for use as a firewall and router. In addition to being a powerful, flexible firewalling and routing platform, it includes a long list of related features and a package system allowing further expandability without adding bloat and potential security vulnerabilities to the base distribution. pfSense is a popular project with more than 1 million downloads since its inception, and proven in countless installations ranging from small home networks protecting a PC and an Xbox to large corporations, universities and other organizations protecting thousands of network devices.]]>
            </summary>
            <updated>2025-08-29T16:26:01+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/8881</id>
            <title type="text"><![CDATA[Untangle: Network Policy at Work]]></title>
            <link rel="alternate" href="http://www.untangle.com/" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/8881"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Go beyond firewall and UTM basics to total control of web content, applications, bandwidth usage and remote access in a single solution.]]>
            </summary>
            <updated>2025-08-29T16:38:09+00:00</updated>
        </entry>
    </feed>
