Search found 383 matches

by hany
Tue Jun 06, 2017 4:07 pm
Forum: Murus
Topic: Anti-Spoofing Rules - How do I do this with Murus?
Replies: 4
Views: 212

Re: Anti-Spoofing Rules - How do I do this with Murus?

But could you explain what those 2 rules mean. I don't know what "no-route" means and what "urpf-failed" is. I'll answer quoting OpenBSD FAQ: Unicast Reverse Path Forwarding PF offers a Unicast Reverse Path Forwarding (uRPF) feature. When a packet is run through the uRPF check, ...
by hany
Thu Jun 01, 2017 6:06 pm
Forum: Murus
Topic: Anti-Spoofing Rules - How do I do this with Murus?
Replies: 4
Views: 212

Re: Anti-Spoofing Rules - How do I do this with Murus?

hello megumi, you cannot put custom rules on top of rulelist, they must stay within they proper range. They are loaded at runtime into a dedicated anchor that stays at the end of the ruleset. This is because, to be effective, they must be matched after 'normal' rules. About antispoofing: these 3 cus...
by hany
Sat May 27, 2017 1:15 pm
Forum: Vallum
Topic: Vallum 2.1 crash
Replies: 5
Views: 230

Re: Vallum 2.1 crash

Hello megumi, I'm sorry this is really strange, I don't know why it happened. Probably the only way for us to troubleshoot this issue is to see crash logs. You should be able to find a Vallum crash log using macOS Console.app, in "user reports". Can you please have a look at it and send us...
by hany
Tue May 23, 2017 12:45 pm
Forum: Murus
Topic: PFLOGGERD on EL Capitan not being used
Replies: 1
Views: 104

Re: PFLOGGERD on EL Capitan not being used

Hence my confusion as I understood that the new daemon would be used when installing Murus 1.4.10 no matter the Mac version. Is this correct? Hello nebra, no it is not correct. Sorry about that, maybe we should clarify this in our documentation. Murus 1.4.10 installs different Boot Scripts accordin...
by hany
Tue May 16, 2017 9:40 pm
Forum: Vallum
Topic: Binding App to a network card
Replies: 1
Views: 152

Re: Binding App to a network card

No, I'm sorry, this is not an option as far as we know.
The kernel filter does not appear to support this feature.
by hany
Fri May 12, 2017 2:52 pm
Forum: Murus
Topic: Disable Murus/pf on boot
Replies: 1
Views: 164

Re: Disable Murus/pf on boot

Hi, I'm recently having an issue with Proactivity where my IP address is being added to the brute force adaptive list over and over again. I have disabled proactivity on all the services I am using (VNC, ssh, etc) and for whatever reason, the IP is still being blocked. I can open the Proactivity wi...
by hany
Fri May 12, 2017 12:43 pm
Forum: Murus
Topic: Dual-homed router setup
Replies: 1
Views: 143

Re: Dual-homed router setup

So far, so good. My questions: I) In Logs Visualizer, I see "internal" devices on 192.168.10.0/24 appear as "Inbound Passed Connections". I understand "inbound" as traffic coming from WAN/en0 on B) and targeting everything on the Mac server or "beyond" in LAN...
by hany
Thu Apr 27, 2017 3:31 pm
Forum: Murus
Topic: MURUS 1.4.10 RELEASED
Replies: 0
Views: 254

MURUS 1.4.10 RELEASED

Murus 1.4.10 is now available as a free update for all users.
This is a bug-fix release.
by hany
Thu Apr 27, 2017 3:30 pm
Forum: Murus
Topic: It is possible to set/create own option rules?
Replies: 1
Views: 222

Re: It is possible to set/create own option rules?

no, I'm sorry, it is not possible with current version of Murus. This has been done on purpose because on older OSX versions (10.9) changing these pf parameters caused many instabilities. The same occurs using the 'synproxy' parameter in pf rules. However it seems that pf on 10.12 is somehow more st...
by hany
Thu Apr 20, 2017 9:04 pm
Forum: Murus
Topic: Prioritizing ACKs - QOS
Replies: 1
Views: 611

Re: Prioritizing ACKs - QOS

I'm sorry but no, unfortunately ACK prioritization is not available on Murus.

Go to advanced search