HttpFilteringEngine icon indicating copy to clipboard operation
HttpFilteringEngine copied to clipboard

Add generic connection drop filtering

Open TechnikEmpire opened this issue 7 years ago • 0 comments

Add a filtering language to the core diverter that can detect flows to certain connections and just drop them.

Probably should just use the suricata format so we can consume rules from places like emerging threats. However, if this is too complex for quick release, just start off with something sufficient for catching and blocking connections made by the host OS. The reason for this goal is because Windows 10, despite locking down security and privacy settings, makes constant connections to MS servers and partners. For privacy sake, we want to have binary control of these. Must be able to permit Windows update communication.

TechnikEmpire avatar Jul 23 '17 20:07 TechnikEmpire