Vuurmuur is a powerful firewall manager built on top of iptables on Linux.
It has a simple and easy to learn configuration that allows both simple and complex configurations.
The configuration can be fully configured through an Ncurses GUI, which allows secure remote administration through SSH or on the console.
Vuurmuur has powerful monitoring features, which allow the administrator to look at the logs, connections and bandwidth usage in realtime. It makes use of IPTrafficVolume for keeping track of the traffic volume per interface.
The program is divided into three part. One element (the middle-end) converts humanly-readable rules, hosts, groups, networks, zones, interfaces and services into a iptables ruleset (or optional into a bash-script). The second element is a small daemon that converts the Netfilter logs to easy readable logs. The final element is an Ncurses-based user interface (the front-end) to manage the firewall.
Key Features
Administration
- No iptables knowledge required.
- Humanly readable rules syntax.
- Ncurses GUI, no X required.
- Portforwarding is made very simple.
- Easy to setup in with NAT.
- Secure default policy.
- Entirely manageble through ssh and from the console.
- Scriptable for integration with other tools.
- Can produce a bash firewall script.
- Anti-spoofing features.
- Killing of unwanted connections.
- Supports working with Snort_inline using QUEUE or NFQUEUE.
Monitoring
- Realtime log viewing.
- Realtime connection viewing.
- Filtering in log viewing and connection viewing.
- Basic traffic volume accounting.
- Searching through old logfiles.
Accounting
- Audit logging: all changes are logged.
- Logging of new connections and bad packets.
- Traffic volume accounting.
Website: www.vuurmuur.org
Support: Manual
Developer: Adi Kriegisch, Hugo Ribeiro and others
License: GNU General Public License
Vuurmuur is written in C. Learn C with our recommended free books and free tutorials.
Related Software
| Firewalls | |
|---|---|
| OpenSnitch | Interactive application firewall |
| nftables | Provides a new in-kernel packet classification framework |
| Firewalld | Dynamically managed firewall with support for network/firewall zones |
| Portmaster | Application firewall that does the heavy lifting |
| iptables | Configure the Linux 2.4.x and later packet filtering ruleset |
| ufw | Uncomplicated Firewall. This is software for managing a netfilter firewall |
| Shorewall | High-level tool for configuring Netfilter |
| gufw | Easy, intuitive, way to manage your Linux firewall |
| Vuurmuur | Uncomplicated Firewall, manage a netfilter firewall |
| awall | Firewall configuration tool, providing various benefits over plain iptables |
| Foomuuri | Multizone bidirectional nftables firewall |
| bgpipe | BGP reverse proxy and firewall |
Read our verdict in the software roundup.
Explore our comprehensive directory of recommended free and open source software. Our carefully curated collection spans every major software category.This directory is part of our ongoing series of informative articles for Linux enthusiasts. It features hundreds of detailed reviews, along with open source alternatives to proprietary solutions from major corporations such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk. You’ll also find interesting projects to try, hardware coverage, free programming books and tutorials, and much more. Know a useful open source Linux program that we haven’t covered yet? Let us know by completing this form. |

