IP-ARRAY README
What is IP-Array?
An iptables firewall (IPv4) and traffic shaping script written in bash.
It is meant to be used from single hosts to small and mid-sized networks.
Where to get it?
IP-Array is currently hosted at sf.net.
The project page is at: http://sourceforge.net/projects/ip-array/.
Its homepage is at: http://ip-array.sourceforge.net/.
Features
It does support most features of iptables and some of xtables-addons.
- Rules are written in simple XML.
They can be written in different ways depending on the need.
Either as (grouped / nested) XML tags, or so called ruleblocks,
where only values have to be put into.
Their structure is defined by custom templates.
- Different start modi.
- Custom epilog and prolog scripts for each start mode.
- Muliple levels of output verbosity with optional syslog logging.
- Coloured output (can be disabled).
- Various /proc filesystem settings.
- Automatic 'jump tree' creation options.
- An interactive wizard based mode to create configuration files.
- Public functions.
- ipset support.
- Some autoconfig presets for DNS, FTP, SMTP, NTP, IPSEC, etc.
- The ability to save the generated iptables / ipset, tc rules, modprobe,
or /proc commands to a file.
- Error handling. Previous system states can be restored on error.
- Traffic shaping.
Installation, Configuration, System Requirements, etc.
Please read the reference manual.