{"repo":"wolfSSL/wolfsentry","free":true,"listed":false,"github":"https://github.com/wolfSSL/wolfsentry","clone":"git clone https://github.com/wolfSSL/wolfsentry.git","description":"wolfSSL Intrusion Detection and Prevention System (IDPS)","language":"C","stars":54,"topics":["idps","ids","embedded","firewall","iot-security","c-library","embedded-systems","iot","security","wolfssl"],"license":null,"category":"security-tools","readme_excerpt":"wolfSentry -- The Wolfssl Embedded Firewall/IDPS Description wolfSentry is the wolfSSL embedded IDPS (Intrusion Detection and Prevention System). In simple terms, wolfSentry is an embedded firewall engine (both static and fully dynamic), with prefix-based and wildcard-capable lookup of known hosts/netblocks qualified by interface, address family, protocol, port, and other traffic parameters. Additionally, wolfSentry can be used as a dynamically configurable logic hub, arbitrarily associating user-defined events with user-defined actions, contextualized by connection attributes. The evolution of client-server relationships can thus be tracked in detail, freely passing traffic matching expected usage patterns, while efficiently rejecting abusive traffic. wolfSentry is fully integrated with the lwIP stack, through a patchset in the lwip/ subdirectory of the source tree, and has basic integration with the wolfSSL library for application-level filtering of inbound and outbound connections. The wolfSentry engine is dynamically configurable programmatically through an API, or from a textual input file in JSON supplied to the engine, or dynamically and incrementally with JSON fragments, or any combination of these methods. Reconfiguration is protected by transactional semantics, and advanced internal locks on threaded targets assure seamless service availability with atomic policy transition. Callbacks allow for transport-agnostic remote logging, e.g. through MQTT, syslog, or DDS mes","default_branch":null,"files":null,"tree":[],"storefront":"/r/wolfSSL","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/wolfSSL/wolfsentry/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}