Downloadliste

Projektbeschreibung

360-FAAR (Firewall Analysis Audit and Repair) is an offline, command line, Perl firewall policy manipulation tool to filter, compare to logs, merge, translate, and output firewall commands for new policies, in Checkpoint dbedit, Cisco ASA, or ScreenOS commands. It is all contained in one file. It can read policy and logs for: Checkpoint FW1 (in odumper.csv / logexport format), Netscreen ScreenOS (in get config / syslog format), and Cisco ASA (show run / syslog format). It uses both inclusive and exclusive CIDR and text filters, permitting you to split large policies into smaller ones for virutalization at the same time as removing unused connectivity. It supports policy to log association, object translation, rulebase reordering and simplification, rule moves, and duplicate matching automatically. It allows you to seamlessly move rules to where you need them. 'print' mode creates a spreadsheet for your audit needs with one command.

Systemanforderungen

Die Systemvoraussetzungen sind nicht definiert
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2013-01-30 05:47
0.3.8


Dieses Release bringt Cisco ASA 8.3 + Objekt NAT für den Cisco-Leser für statische und dynamische NAT.

Netzwerkobjekte, Bereiche und IPs werden übersetzt.

Ausführen des Skripts mit "--helfen" oder "-h" oder "h" druckt den einfache Hilfe-Bildschirm.

Zwei neue Optionen wurden hinzugefügt, die "rr" Modus-Filter, Verschlüsselung Regeln aus dem "Zusammenführen von" und "zu mischen" Rulebases spätere Regeln bei der Zusammenführung von Rulebase Maske verwendet werden können.

Konnektivität Treffern Ausgabe während "rr" Modus Filterung werden nun aufgeführt die binäre CIDR IP Konfiguration Bündel Objekt Datenquellennamen statt.

Dieses Release behebt das Menü Infiniteloop Problem.
Tags: Major, Stable CLI, Stable, NAT, Bug Fix, cisco

This release adds Cisco ASA 8.3+ object NAT to the cisco reader for static and dynamic NAT.

Network objects,
ranges,
and IPs are translated.

Running the script with "--help" or "-h" or "h" prints the simple help screen.

Two new options have been added to the "rr" mode filters,
to allow encryption rules from the
"merge from" and "merge to" rulebases to be used to mask later rules in the merge from
rulebase.

Connectivity matches output during "rr" mode filtering are now listed using the source
configuration bundle object names instead of the binary CIDR IP's.

This release
resolves the menu infiniteloop issue.

2012-03-15 06:24
0.1.7

Dieses Release fügt eine Cisco Asa Protokollleser und behebt viele Fehler in der Cisco und Netscreen-Politik-Leser.
Tags: Stable
This release adds a Cisco asa log reader and fixes many bugs in the Cisco and Netscreen policy readers.

2012-03-12 07:20
0.1.6

Dies ist die erste Freecode-Version.
Tags: Stable
This is the first Freecode release.

Project Resources