New firewalling technique proposal

Aaron Gray aaronngray.lists at gmail.com
Fri Oct 31 09:30:49 PDT 2025


I am writing looking for developers interested in a new idea for
firewalling on OpenWRT.

The initial concept is very simple, basically tallying all outgoing
and optionally incoming IP packets with a record of all DNS IP
requests, by using an iptables extension module.

In addition to this, is the idea of an OpenWRT web user interface
extension to manage connections, this would show all open connections.
With the additional optional functionality of only allowing new
connections to new IP addresses and/or domains when they are validated
by the user. Any unknown IP traffic will be denied and flagged up with
reverse IP lookup attempted and domains displayed. Opinions for
allowing a whitelists of all Ubuntu, Debian, Microsoft Windows,
installer and update IP's can also be added.

In addition user desktop apps may allow this to be displayed on the
users desktop, as an icon tray app on Windows for example.

I have developed and ported command line tools for Linux, Windows, and
MacOS, and have potentially Android and iOS skills. I have done simple
Hello World, and Map apps in the past for both mobile platforms, so we
could add mobile app support too.

Anyone interested in working on this project on whatever level ideally
first the iptables extension please do chime in or get in touch.

Regards,

Aaron
--
Aaron Gray - https://github.com/AaronNGray

Meta-Mathematician, Independent Open Source Software Engineer,
Computer Language Researcher and Designer, Type Theorist, Computer
Scientist, Environmentalist and Climate Science Researcher and
Disseminator.



More information about the openwrt-devel mailing list