We provide security updates for the following versions:
| Version | Supported |
|---|---|
| 0.x.x | ✅ |
The security of our project is a top priority. If you believe you have found a security vulnerability, please follow these steps:
- Do Not disclose the vulnerability publicly
- Do Not open a public issue on GitHub
- Email us directly at [your-security-email@example.com] with details about the vulnerability
- Include the following information:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix, if available
Once you've submitted a vulnerability report, here's our process:
- We will acknowledge receipt of your report within 48 hours
- We will work to confirm the vulnerability and determine its impact
- We will develop and test a fix
- We will release a security update
- We will publicly acknowledge your responsible disclosure (unless you prefer to remain anonymous)
When deploying this software:
- Always run the latest version with security updates
- Follow the principle of least privilege when setting up service accounts
- Regularly audit access to the system
- Enable proper network security controls
- Keep all dependencies up to date
- Consider network segmentation to isolate the router/firewall system
This router/firewall distribution includes several security features:
- IDS/IPS capabilities via Suricata
- Network behavioral analysis via Zeek
- Immutable base operating system (Talos Linux)
- Container isolation for network services
- Automatic security updates
- Comprehensive logging for security auditing
Thank you for helping keep our project secure!