awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

13 مستودعات

Awesome GitHub RepositoriesLinux Firewall Configurations

Manages and adjusts Linux firewall settings for network traffic control.

Distinguishing note: Focuses on OS-level firewall management, distinct from network-wide security policies.

Explore 13 awesome GitHub repositories matching system administration & monitoring · Linux Firewall Configurations. Refine with filters or upvote what's useful.

Awesome Linux Firewall Configurations GitHub Repositories

اعثر على أفضل المستودعات باستخدام الذكاء الاصطناعي.سنبحث عن أفضل المستودعات المطابقة باستخدام الذكاء الاصطناعي.
  • tailscale/tailscaleالصورة الرمزية لـ tailscale

    tailscale/tailscale

    32,596عرض على GitHub↗

    Tailscale is a zero-trust networking overlay that connects distributed devices and services into a private, encrypted mesh network. By utilizing a high-performance, user-space implementation of the WireGuard protocol, it establishes secure peer-to-peer tunnels across diverse network topologies without requiring complex firewall configuration. The platform operates on a centralized control plane that manages global network state, authentication, and policy distribution, ensuring that connectivity is governed by identity rather than traditional IP-based rules. What distinguishes Tailscale is it

    Adjusts firewall settings on Linux devices to control how network traffic is filtered and managed.

    Go2faoauthsso
    عرض على GitHub↗32,596
  • trailofbits/algoالصورة الرمزية لـ trailofbits

    trailofbits/algo

    30,278عرض على GitHub↗

    Algo is a cloud VPN deployment tool and WireGuard orchestrator designed to automate the provisioning and configuration of personal VPN servers across multiple cloud infrastructure providers. It functions as a multi-cloud infrastructure provisioner and a VPN client configuration generator, creating the necessary tunnels and connection profiles for secure device connectivity. The project distinguishes itself by integrating a network ad-blocking DNS server directly into the deployment, filtering advertisements and malicious domains for all connected clients. It further simplifies the onboarding

    Configures Linux Netfilter rules for IPv4 and IPv6 to secure the server and allow VPN traffic.

    Pythonansibleencryptionikev2
    عرض على GitHub↗30,278
  • kiddin9/kwrtالصورة الرمزية لـ kiddin9

    kiddin9/Kwrt

    8,933عرض على GitHub↗

    Kwrt is a custom router firmware generator and build system designed to compile personalized network hardware images and Linux-based router operating systems. It specifically serves as an OpenWrt firmware builder and image customizer, allowing for the creation of tailored operating systems based on specific software packages, kernel configurations, and hardware targets. The system produces firmware in multiple boot formats, including EFI, Legacy, virtual disk files, and root archives for containers. It enables the generation of specialized images for x86 or virtualized network hardware, provi

    Enables the definition of network port assignments and interface configurations within the firmware.

    Shellk2pkwrtnanopi-r2s
    عرض على GitHub↗8,933
  • openwrt/luciالصورة الرمزية لـ openwrt

    openwrt/luci

    7,683عرض على GitHub↗

    LuCI is a web-based graphical user interface and management framework for OpenWrt. It serves as an embedded Linux router dashboard that allows for the configuration of network devices and system operations through a web browser. The framework provides a visual system for managing firewall rules, DHCP, and wireless settings. It enables remote system administration by translating web requests into backend tasks and system changes. The system utilizes a remote procedure call daemon for backend execution and a unified configuration interface for state management. It employs a logic layer and tem

    Manages IP addresses, routing, wireless settings, and firewall rules on embedded Linux routers.

    JavaScript
    عرض على GitHub↗7,683
  • tzapu/wifimanagerالصورة الرمزية لـ tzapu

    tzapu/WiFiManager

    7,210عرض على GitHub↗

    WiFiManager is a captive portal and web server framework used for configuring wireless credentials and network settings on ESP8266 microcontrollers. It provides an embedded network configuration interface that allows users to connect devices to a wireless network via a web browser rather than hardcoding credentials. The system functions by temporarily acting as a wireless host and redirecting incoming web requests to a local configuration page. It distinguishes itself through a customizable portal that supports user-defined input parameters, visual themes, and multi-language localization to c

    Allows assigning custom IP addresses for both the access point and station operational modes.

    C++arduinocaptiveconfiguration-portal
    عرض على GitHub↗7,210
  • oisf/suricataالصورة الرمزية لـ OISF

    OISF/suricata

    6,008عرض على GitHub↗

    Suricata is an open-source network intrusion detection and prevention engine that analyzes live network traffic in real-time to identify and alert on malicious activity. It operates as a rule-based threat detection system, matching traffic against user-defined signatures to detect known attack patterns and policy violations, and can be placed inline to actively block malicious packets before they reach their target. The engine inspects a wide range of application-layer protocols including HTTP, DNS, TLS, SMB, and MQTT, and supports high-performance packet capture through specialized hardware a

    Sets up the engine to operate in inline IPS mode on Linux by bridging network interfaces and applying drop rules.

    Ccybersecurityidsintrusion-detection-system
    عرض على GitHub↗6,008
  • includeos/includeosالصورة الرمزية لـ includeos

    includeos/IncludeOS

    5,239عرض على GitHub↗

    IncludeOS هو نظام تشغيل من نوع unikernel يجمع كود التطبيق مع تعريفات النواة الضرورية فقط في صورة واحدة قابلة للإقلاع. يعمل النظام كجهاز افتراضي سحابي فعال من حيث الموارد وبيئة تشغيل خفيفة بدون خادم (serverless) مصممة لتقليل استهلاك الذاكرة وأوقات الإقلاع. يوفر المشروع طبقة توافق مع Linux عبر مكتبة C، مما يسمح بتجميع وتشغيل التطبيقات المكتوبة لـ Linux داخل بيئة unikernel. كما يعمل كإطار عمل لأجهزة الشبكة لبناء جدران حماية وموازنات أحمال عالية الأداء باستخدام حزم TCP/IP قابلة للتهيئة. تشمل قدراته الواسعة إنشاء صور جهاز مصغرة للنشر على منصات مثل KVM وQemu وVMware، بالإضافة إلى تعزيز أمان أجهزة IoT المضمنة عبر منع إعادة التهيئة أثناء التشغيل. يدعم النظام بدء تشغيل الخدمة السريع لتحسين أوقات التشغيل البارد (cold starts) ويستخدم جدولة غير استباقية للحفاظ على زمن استجابة متوقع.

    Provides capabilities to set up IP addresses, routing, and TCP servers using DHCP or static configurations.

    C++cppoperating-systemunikernel
    عرض على GitHub↗5,239
  • christitustech/linutilالصورة الرمزية لـ ChrisTitusTech

    ChrisTitusTech/linutil

    5,133عرض على GitHub↗

    Linutil هي صندوق أدوات لتكوين النظام يعتمد على Rust مصمم لأتمتة تثبيت البرامج، وإعداد الأجهزة، وفرض أساسيات الأمان عبر توزيعات Linux المختلفة. تعمل كأداة عالية الأداء لتنفيذ مهام التكوين المجمعة وإدارة أساسيات النظام من خلال واجهة طرفية. يوفر المشروع مدير إعداد لا يعتمد على توزيعة معينة يسمح للمستخدمين بتكوين الأجهزة الطرفية وتثبيت بيئات سطح المكتب عبر إصدارات Linux المختلفة. ويتضمن أداة متخصصة لتكوين جدار الحماية لتطبيق قواعد حركة مرور الشبكة القياسية وأساسيات الأمان. تغطي إمكانيات الأداة التثبيت التلقائي لفئات البرامج المنسقة للتطوير والاتصالات والألعاب. كما تدير تكوين الأجهزة الطرفية للشاشات والطابعات وأجهزة Bluetooth، مع توفير تحسينات لبيئات الألعاب والمحاكاة.

    Manages and adjusts Linux firewall settings to enforce standardized network traffic control rules.

    Shell
    عرض على GitHub↗5,133
  • pirate/wireguard-docsالصورة الرمزية لـ pirate

    pirate/wireguard-docs

    4,990عرض على GitHub↗

    This project is a comprehensive technical documentation site and reference manual for configuring and deploying WireGuard VPN tunnels and interfaces. It serves as a guide for establishing encrypted network connections between peers using public key authentication to secure data traffic across untrusted networks. The documentation provides specific technical manuals for implementing NAT traversal solutions, including UDP hole punching and the use of bounce servers to connect peers behind restrictive firewalls. It also includes detailed guides on tunnel implementation and protocol references fo

    Provides instructions for defining local networking settings, including IP addresses and DNS servers, via configuration files.

    Shellinternetkernel-modulelinux
    عرض على GitHub↗4,990
  • markqvist/reticulumالصورة الرمزية لـ markqvist

    markqvist/Reticulum

    4,438عرض على GitHub↗

    Reticulum is a decentralized networking stack that enables encrypted, peer-to-peer communication over diverse physical mediums without relying on central infrastructure or IP protocols. It uses self-sovereign cryptographic identities for routing and authentication, replacing traditional IP addresses with collision-free globally unique addresses that require no central coordination. Every packet is encrypted by default using ephemeral key exchanges with forward secrecy, and unencrypted traffic is dropped as invalid. The stack unifies heterogeneous transport mediums—including LoRa radio, packet

    Defines Reticulum network interfaces and their parameters in a configuration file for flexible deployment.

    Pythonlorameshmesh-networks
    عرض على GitHub↗4,438
  • hestiacp/hestiacpالصورة الرمزية لـ hestiacp

    hestiacp/hestiacp

    4,379عرض على GitHub↗

    HestiaCP هو لوحة تحكم استضافة ويب Linux مصممة للإدارة المركزية لخوادم الويب وقواعد البيانات وسجلات DNS. تعمل كمجموعة إدارة لاستضافة خدمات البريد الإلكتروني وإدارة بيئات تشغيل لغة PHP متعددة لتطبيقات الويب وحسابات المستخدمين المختلفة. يتميز المشروع بتنسيق أمان متكامل، حيث يوفر منسق جدار حماية Linux مع اكتشاف تلقائي للقوة الغاشمة ومؤتمت شهادات SSL لإصدار وتجديد شهادات الأمان. يتضمن مدير منطقة DNS مع دعم التجميع، بالإضافة إلى مسؤول خادم بريد يتميز بأدوات مكافحة البريد العشوائي والفيروسات المتكاملة. يغطي النظام مجموعة واسعة من قدرات الاستضافة، بما في ذلك إدارة قواعد البيانات العلائقية، وتنسيق خادم الويب، وتعيين اسم مستعار للنطاق. يوفر أدوات إدارية مثل مدير ملفات قائم على المتصفح، ومحطة طرفية قائمة على الويب، وتقييد استخدام الموارد عبر مجموعات التحكم لمنع استنفاد النظام. يتم نشر البرنامج عبر نصوص صدفة غير مراقبة تقوم بتمهيد مجموعة كاملة من خوادم الويب والبريد وقواعد البيانات على خادم خاص افتراضي.

    Provides a Linux firewall orchestrator to control network traffic and block malicious IPs.

    Shell
    عرض على GitHub↗4,379
  • gpac/gpacالصورة الرمزية لـ gpac

    gpac/gpac

    3,205عرض على GitHub↗

    GPAC is an open-source multimedia framework built around a pluggable filter graph pipeline, where modular processing units called filters connect into a directed graph to handle media workflows. At its core, the framework centers all media packaging and manipulation on the ISO Base Media File Format (ISOBMFF), with specialized tools for reading, writing, fragmenting, and encrypting MP4 and related containers. It also provides a declarative scene graph composition system for describing interactive multimedia scenes using MPEG-4 BIFS, X3D, SVG, or VRML syntax, alongside a hardware-accelerated re

    Configures multicast network interfaces by IP address or device name for media streaming.

    Catsc3broadcastcenc
    عرض على GitHub↗3,205
  • iam-veeramalla/ultimate-linux-guideالصورة الرمزية لـ iam-veeramalla

    iam-veeramalla/ultimate-linux-guide

    2,705عرض على GitHub↗

    The Ultimate Linux Guide is a curated collection of Linux commands and concepts organized as a lookup reference for quick retrieval. It is delivered as a static markdown repository with no build step, ensuring zero-dependency access and version control, and is designed as a reference-first documentation rather than a tutorial. The guide uses a progressive skill-building structure, arranging topics so that foundational skills like file navigation are mastered before advanced topics like process management. All commands and examples use only POSIX-standard syntax that works identically across m

    Configures network interfaces and connections using basic networking commands.

    عرض على GitHub↗2,705
  1. Home
  2. System Administration & Monitoring
  3. Linux Firewall Configurations

استكشف الوسوم الفرعية

  • Inline IPS ConfigurationsConfigures the engine to operate in inline IPS mode on Linux by bridging network interfaces and applying drop rules. **Distinct from Linux Firewall Configurations:** Distinct from Linux Firewall Configurations: focuses on inline IPS setup for a detection engine, not general OS-level firewall management.
  • Network Interface Configurations1 وسم فرعيManagement of IP addresses, routing, and network server settings. **Distinct from Linux Firewall Configurations:** Covers general network setup like IP and DHCP, whereas the parent focuses specifically on firewall rules.