opnsense/core

PHPopnsense.org

代替: pfSense

OPNsense GUI, API and systems backend

firewallguiapiipsproxyvpnshapingcaptive-portalbsdroutinghacktoberfest
スター成長
スター
4.7k
フォーク
985
週間成長
+12
Issue
261
2k4k
2023年1月2024年3月2025年6月2026年9月
成果物Packagist
README

OPNsense GUI and system management

The OPNsense project invites developers to start contributing to the code base. For your own purposes or – even better – to join us in creating the best open source firewall available.

The build process has been designed to make it easy for anyone to build and write code. The main outline of the new codebase is available at:

https://docs.opnsense.org/development/architecture.html

Our aim is to gradually evolve to a new codebase instead of using a big bang approach into something new.

Coverity Scan Build Status

Build tools

To create working software like OPNsense you need the sources and the tools to build it. The build tools for OPNsense are freely available.

Notes on how to build OPNsense can be found in the tools repository:

https://github.com/opnsense/tools

Contribute

You can contribute to the project in many ways, e.g. testing functionality, sending in bug reports or creating pull requests directly via GitHub. Any help is always very welcome!

You can learn more about contributing on CONTRIBUTING.md.

License

OPNsense is and will always be available under the 2-Clause BSD license:

https://opensource.org/licenses/BSD-2-Clause

Every contribution made to the project must be licensed under the same conditions in order to keep OPNsense truly free and accessible for everybody.

Makefile targets

The repository offers a couple of targets that either tie into tools.git build processes or are aimed at fast development.

make package

A package of the current state of the repository can be created using this target. It may require several packages to be installed. The target will try to assist in case of failure, e.g. when a missing file needs to be fetched from an external location.

Several OPTIONS exist to customise the package, e.g.:

  • CORE_DEPENDS: a list of required dependencies for the package
  • CORE_DEPENDS_ARCH: a list of special -required packages
  • CORE_ORIGIN: sets a FreeBSD compatible package/ports origin
  • CORE_COMMENT: a short description of the package
  • CORE_MAINTAINER: email of the package maintainer
  • CORE_WWW: web url of the package
  • CORE_NAME: sets a package name

Options are passed in the following form:

# make package CORE_NAME=my_new_name

In general, options are either set to sane defaults or automatically detected at runtime.

make update

Update will pull the latest commits from the current branch from the upstream repository.

make upgrade

Upgrade will run the package build and replace the currently installed package in the system.

make collect

Fetch changes from the running system for all known files.

make lint

Run several syntax checks on the repository. This is recommended before issuing a pull request on GitHub.

make style

Run the PSR12 and PEP8 style checks on MVC PHP code and Python, respectively.

For easier development you may want to use an OPNsense VM and install the os-debug plugin that will offer the necessary tools.

make sweep

Run several automatic sanitizers on the code base.

関連リポジトリ
fatedier/frp

A fast reverse proxy to help you expose a local server behind a NAT or firewall to the internet.

GoGo ModulesApache License 2.0proxyreverse-proxy
109.3k15.2k
ehang-io/nps

一款轻量级、高性能、功能强大的内网穿透代理服务器。支持tcp、udp、socks5、http等几乎所有流量转发,可用来访问内网网站、本地支付接口调试、ssh访问、远程桌面,内网dns解析、内网socks5代理等等……,并带有功能强大的web管理端。a lightweight, high-performance, powerful intranet penetration proxy server, with a powerful web management terminal.

GoGo ModulesGNU General Public License v3.0sockstcp
ehang.io/nps/documents
34.2k6.1k
chaitin/SafeLine

SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.

GoGo ModulesGNU General Public License v3.0firewallhttp-flood
ly.safepoint.cloud/fUxS0GW
22.5k1.5k
gravitational/teleport

The easiest, and most secure way to access and protect all of your infrastructure.

GoGo ModulesGNU Affero General Public License v3.0sshgo
goteleport.com
20.9k2.1k
rathole-org/rathole

A lightweight and high-performance reverse proxy for NAT traversal, written in Rust. An alternative to frp and ngrok.

Rustcrates.ioApache License 2.0nattunnel
14.1k821
evilsocket/opensnitch

OpenSnitch is a GNU/Linux interactive application firewall inspired by Little Snitch.

PythonPyPIGNU General Public License v3.0application-firewallfirewall
14k661
safing/portmaster

🏔 Love Freedom - ❌ Block Mass Surveillance

GoGo ModulesappGNU General Public License v3.0application-firewalldns
safing.io
13.7k575
henrypp/simplewall

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

CappGNU General Public License v3.0wfpnetwork
8.9k649
0xInfection/Awesome-WAF

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

PythonPyPIawesomeApache License 2.0wafweb-application-firewall
7.6k1.2k
chaifeng/ufw-docker

To fix the Docker and UFW security flaw without disabling iptables

ShellcliGNU General Public License v3.0dockerufw
6.8k498
ffay/lanproxy

lanproxy是一个将局域网个人电脑、服务器代理到公网的内网穿透工具,支持tcp流量转发,可支持任何tcp上层协议(访问内网网站、本地支付接口调试、ssh访问、远程桌面、http代理、https代理、socks5代理...)。技术交流QQ群 736294209

JavaMavenlanproxynat
nat.nioee.com
5.9k1.5k
pfsense/pfsense

Main repository for pfSense

PHPPackagistApache License 2.0pfsensefirewall
pfsense.org
5.7k1.6k