opensnitch icon indicating copy to clipboard operation
opensnitch copied to clipboard

[Feature Request] Ability to list and remove, non-existent files' rules

Open bfcns opened this issue 2 years ago • 5 comments

Being able to list non existent executable in rules, so the rule can be easily removed.

bfcns avatar Apr 27 '23 12:04 bfcns

hi @phpcitizen ,

by non-existent files' rules do you mean temporary rules? put an example please so I can undesrtand it better.

gustavo-iniguez-goya avatar Apr 27 '23 13:04 gustavo-iniguez-goya

Sure, I mean files removed from the system do not need firewall rules anymore, so we can detect and remove them. Like a button with "find invalid rules", then it would list the rules that have no resolved links to an executable anymore.

bfcns avatar Apr 27 '23 14:04 bfcns

If I may add another feature request.

There should be another default Duration/Action selection option in settings for unattended (when you are not in front of the computer) when the timeout passes of a pop-up.

bfcns avatar Apr 27 '23 16:04 bfcns

Sure, I mean files removed from the system do not need firewall rules anymore, so we can detect and remove them. Like a button with "find invalid rules", then it would list the rules that have no resolved links to an executable anymore.

It's not a bad idea. But for some rules, it can be quite complicated. For example, rules that concern AppImages may be included in the list whose binaries do not exist, while the situation may be quite normal if the AppImage software is not running.

NRGLine4Sec avatar Apr 27 '23 22:04 NRGLine4Sec

Yes, I understand, but I think this can be mitigated with pinning some rules...

bfcns avatar Apr 29 '23 13:04 bfcns