fw-daemon
fw-daemon copied to clipboard
Universal tlsguard support
While this is currently underway as an extension to the new built-in fw-daemon SOCKS5 server, an even better way would be to use passive inspection via netfilter queues to be able to perform the same verification for any kind of outbound connection on the box.
This has been implemented, but is not yet ready for release.
Outstanding items:
- [ ] Dealing with adding required iptables rules
- [ ] Testing with all bridge sandboxes (openvpn / clearnet)