Vuurmuur is a powerful firewall manager built on top of iptables on Linux.
It has a simple and easy to learn configuration that allows both simple and complex configurations.
The configuration can be fully configured through an Ncurses GUI, which allows secure remote administration through SSH or on the console.
Vuurmuur has powerful monitoring features, which allow the administrator to look at the logs, connections and bandwidth usage in realtime. It makes use of IPTrafficVolume for keeping track of the traffic volume per interface.
The program is divided into three part. One element (the middle-end) converts humanly-readable rules, hosts, groups, networks, zones, interfaces and services into a iptables ruleset (or optional into a bash-script). The second element is a small daemon that converts the Netfilter logs to easy readable logs. The final element is an Ncurses-based user interface (the front-end) to manage the firewall.
Key Features
Administration
- No iptables knowledge required.
- Humanly readable rules syntax.
- Ncurses GUI, no X required.
- Portforwarding is made very simple.
- Easy to setup in with NAT.
- Secure default policy.
- Entirely manageble through ssh and from the console.
- Scriptable for integration with other tools.
- Can produce a bash firewall script.
- Anti-spoofing features.
- Killing of unwanted connections.
- Supports working with Snort_inline using QUEUE or NFQUEUE.
Monitoring
- Realtime log viewing.
- Realtime connection viewing.
- Filtering in log viewing and connection viewing.
- Basic traffic volume accounting.
- Searching through old logfiles.
Accounting
- Audit logging: all changes are logged.
- Logging of new connections and bad packets.
- Traffic volume accounting.
Website: www.vuurmuur.org
Support: Manual
Developer: Adi Kriegisch, Hugo Ribeiro and others
License: GNU General Public License
Vuurmuur is written in C. Learn C with our recommended free books and free tutorials.
Related Software
| Firewalls | |
|---|---|
| OpenSnitch | Interactive application firewall |
| nftables | Provides a new in-kernel packet classification framework |
| Firewalld | Dynamically managed firewall with support for network/firewall zones |
| ufw | Uncomplicated Firewall. This is software for managing a netfilter firewall |
| Portmaster | Application firewall that does the heavy lifting |
| iptables | Configure the Linux 2.4.x and later packet filtering ruleset |
| Shorewall | High-level tool for configuring Netfilter |
| gufw | Easy, intuitive, way to manage your Linux firewall |
| XDP-Firewall | Stateless firewall tool |
| Vuurmuur | Uncomplicated Firewall, manage a netfilter firewall |
| awall | Firewall configuration tool, providing various benefits over plain iptables |
| Foomuuri | Multizone bidirectional nftables firewall |
| bgpipe | BGP reverse proxy and firewall |
| FirewallFabrik | Graphical firewall policy management tool |
Read our verdict in the software roundup.
Explore our carefully curated directory of recommended free and open source software, covering every major software category.The directory forms part of our extensive collection of articles for Linux enthusiasts. It includes hundreds of detailed reviews, together with free and open source alternatives to proprietary software from companies such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk. LinuxLinks also covers interesting projects worth exploring, Linux-compatible hardware, free programming books and tutorials, and much more. Know a useful free and open source Linux application that we haven’t covered? Tell us about it using our submission form. |


Please read our Comment Policy before commenting.