Welcome, Guest. Please login or register.
Did you miss your activation email?
Monday 11 November 2024, 07:25:28 am

Login with username, password and session length

Download the latest community FREE version  HERE
14253 Posts in 4377 Topics by 6515 Members
Latest Member: hulteends
Search:     Advanced search
+  EFW Support
|-+  Announcements
| |-+  Project News
| | |-+  RazWall will be an Endian Community Fork
0 Members and 0 Guests are viewing this topic. « previous next »
Pages: [1] Go Down Print
Author Topic: RazWall will be an Endian Community Fork  (Read 258 times)
p3rlphr33k
Jr. Member
*
Offline Offline

Posts: 4



« on: Friday 08 November 2024, 12:45:38 pm »

I am probably a year out from completing the fork. All of the Endian components that have been replaced in the recent 3.3.X versions are compiled into binaries and closed source. I will have to completely recreate those closed components such as the web socket services, dashboard, some CLI components, and the custom service handler. Right now my primary objective is to fix the 4 zone lock in problem. Instead I will leverage the default zone rules as default rule sets to apply to additional zones (screenshot attached). I have already refactored tons of code and consolidated most of the components into a new filesystem structure. Once I resolve some of these issues with the way the firewall works, I will focus on a re-base to newer version of LFS or move to Rocky base. I want to know if this project is of any value to any of the members, or if I am just doing this for myself? I would like to hear some feed back.

In case anyone is concerned about the difficulty of this project, I have plenty of experience with complicated projects. I created the RazDC project!

Thanks for reading!

Screenshot:

supervene DOT com SLASH razwall DOT png
Logged
p3rlphr33k
Jr. Member
*
Offline Offline

Posts: 4



« Reply #1 on: Friday 08 November 2024, 12:53:24 pm »

Just a follow up.. I purchased razwall dot com and will begin setup of a new SMF to aid in communication during development. As soon as I have a fully usable code based on the modifications i will post in the github project "razwall".
Logged
devel.tech1
Jr. Member
*
Offline Offline

Posts: 2



« Reply #2 on: Yesterday at 07:28:05 pm »

Hi,
Thanks for your wonderful work. I appreciate it because community edition is quite old now. Yes, Limitation of zones in endian is big bottleneck but it is removed in the paid version and added many other features as well. I was looking in the IPFire 3.x version. they removed this limitation in the latest version but yet not public probably.  Can you explain how you are doing it. ?


 
Logged
p3rlphr33k
Jr. Member
*
Offline Offline

Posts: 4



« Reply #3 on: Today at 02:16:35 am »

No simple solution here. Endian tied every service into a core module that is closed source. So in order to gain control of the internal network configurations on a permanent basis, a new management interface must be written to replace the emi on this distro. The emi is the "endian management interface". The emi reports stats and statuses to both the UI and console, start and stops services, and does so over UI via web socket using Json. All of this needs to be replaced in order to gain control of the configs. And changes to the still open source parts of endian, result in breaking the software because of hard coded params, and template based configs in the service startup.
Logged
devel.tech1
Jr. Member
*
Offline Offline

Posts: 2



« Reply #4 on: Today at 03:01:39 am »

Yes. agreed. have you seen the sources given on the sourceforge site which may contain core moduel or emil module in it.
I have another suggestion if we can in your fork is to shift on the nft instead of iptables now. secondly, idea of multiple zones can be explored from other distributions like ipfire. do you have a breakdown list of modules or components to be developed in razwall?
Logged
Pages: [1] Go Up Print 
« previous next »
Jump to:  

Page created in 0.047 seconds with 19 queries.
Powered by SMF 1.1 RC2 | SMF © 2001-2005, Lewis Media Design by 7dana.com