# Firewall

A network security device or program that controls traffic between networks or hosts according to security policy.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Translations wanted for the Libreboot website

DevFeed: [Translations wanted for the Libreboot website](<https://devfeed.tech/articles/translations-wanted-for-the-libreboot-website-32735.md>)

Original publisher: [Read original article](<https://libreboot.org/news/translations.html>)

Author: Leah Rowe

Published: 2026-09-17T04:32:50.666044Z

Content type: article

Language: en

Sources: [News about Libreboot releases and development](<https://devfeed.tech/sources/news-about-libreboot-releases-and-development.md>)

Topics: [Website](<https://devfeed.tech/topics/website.md>), [static-site-generator](<https://devfeed.tech/topics/static-site-generator.md>), [Markdown](<https://devfeed.tech/topics/markdown.md>), [nginx](<https://devfeed.tech/topics/nginx.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Linux Kernel](<https://devfeed.tech/topics/linux-kernel.md>), [browser](<https://devfeed.tech/topics/browser.md>)

Tags: [article](<https://devfeed.tech/tags/article.md>), [bios](<https://devfeed.tech/tags/bios.md>), [browser](<https://devfeed.tech/tags/browser.md>), [canoeboot](<https://devfeed.tech/tags/canoeboot.md>), [coreboot](<https://devfeed.tech/tags/coreboot.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [free-software](<https://devfeed.tech/tags/free-software.md>), [html](<https://devfeed.tech/tags/html.md>), [libre](<https://devfeed.tech/tags/libre.md>), [libreboot](<https://devfeed.tech/tags/libreboot.md>), [linux](<https://devfeed.tech/tags/linux.md>), [markdown](<https://devfeed.tech/tags/markdown.md>), [news](<https://devfeed.tech/tags/news.md>), [nginx](<https://devfeed.tech/tags/nginx.md>), [opensource](<https://devfeed.tech/tags/opensource.md>), [uefi](<https://devfeed.tech/tags/uefi.md>), [website](<https://devfeed.tech/tags/website.md>)

### AI overview

Libreboot added translation support to the Untitled Static Site Generator, which generates HTML from Markdown pages. The article explains how translators can track English-site commits, submit patches, preview translations locally, and prepare translated files.

### Source excerpt

Article: Translations wanted for the Libreboot website Web link: https://libreboot.org/news/translations.html

## How WebRTC Scales: Signaling, NAT Traversal, and the Mesh/SFU/MCU Tradeoff

DevFeed: [How WebRTC Scales: Signaling, NAT Traversal, and the Mesh/SFU/MCU Tradeoff](<https://devfeed.tech/articles/how-webrtc-scales-signaling-nat-traversal-and-the-mesh-sfu-mcu-tradeoff-26901.md>)

Original publisher: [Read original article](<https://www.freecodecamp.org/news/how-webrtc-scales-signaling-nat-traversal-and-the-mesh-sfu-mcu-tradeoff/>)

Author: Karan Pratap Singh

Published: 2026-09-15T15:57:39Z

Content type: article

Language: en

Sources: [freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More](<https://devfeed.tech/sources/freecodecamp-programming-tutorials-python-javascript-git-more.md>)

Topics: [WebRTC](<https://devfeed.tech/topics/webrtc.md>), [real-time](<https://devfeed.tech/topics/real-time.md>), [browsers](<https://devfeed.tech/topics/browsers.md>), [API](<https://devfeed.tech/topics/api.md>), [JavaScript](<https://devfeed.tech/topics/javascript.md>), [WebSocket](<https://devfeed.tech/topics/websocket.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Network](<https://devfeed.tech/topics/network.md>), [servers](<https://devfeed.tech/topics/servers.md>)

Tags: [api](<https://devfeed.tech/tags/api.md>), [browsers](<https://devfeed.tech/tags/browsers.md>), [decoding](<https://devfeed.tech/tags/decoding.md>), [distributed-system](<https://devfeed.tech/tags/distributed-system.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [http](<https://devfeed.tech/tags/http.md>), [javascript](<https://devfeed.tech/tags/javascript.md>), [network](<https://devfeed.tech/tags/network.md>), [networking](<https://devfeed.tech/tags/networking.md>), [real-time](<https://devfeed.tech/tags/real-time.md>), [server](<https://devfeed.tech/tags/server.md>), [webrtc](<https://devfeed.tech/tags/webrtc.md>)

### AI overview

This article explains how WebRTC enables browsers to exchange audio, video, and data directly. It covers the three WebRTC APIs, signaling through WebSockets or HTTP, NAT traversal using ICE, STUN, and TURN, and the mesh, SFU, and MCU approaches to scaling media delivery.

### Source excerpt

Web Real-Time Communication (or WebRTC) is the open standard browsers use to send audio, video, and data straight to each other. There's no plugin or native app, nothing beyond an API that every brows

## Appwrite Init 2026 recap: Everything we shipped

DevFeed: [Appwrite Init 2026 recap: Everything we shipped](<https://devfeed.tech/articles/appwrite-init-2026-recap-everything-we-shipped-26795.md>)

Original publisher: [Read original article](<https://appwrite.io/blog/post/appwrite-init-2026-recap>)

Author: Aishwari Pahwa

Published: 2026-09-15T00:00:00Z

Content type: release

Language: en

Sources: [Appwrite Blog](<https://devfeed.tech/sources/appwrite-blog.md>)

Topics: [Appwrite](<https://devfeed.tech/topics/appwrite.md>), [releases](<https://devfeed.tech/topics/releases.md>), [PostgreSQL](<https://devfeed.tech/topics/postgresql.md>), [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [OAuth 2.0](<https://devfeed.tech/topics/oauth2.md>), [Self-hosted](<https://devfeed.tech/topics/self-hosted.md>)

Tags: [2](<https://devfeed.tech/tags/2.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [init](<https://devfeed.tech/tags/init.md>), [oauth2](<https://devfeed.tech/tags/oauth2.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [recap](<https://devfeed.tech/tags/recap.md>), [release](<https://devfeed.tech/tags/release.md>), [releases](<https://devfeed.tech/tags/releases.md>), [s3](<https://devfeed.tech/tags/s3.md>), [self-hosted](<https://devfeed.tech/tags/self-hosted.md>)

### AI overview

An Appwrite Init 2026 recap covering five days of launches, including Appwrite 2.0, a redesigned Console, native PostgreSQL, VectorsDB, DocumentsDB, MySQL, S3-compatible Storage, Firewall, OAuth2, and Domains.

### Source excerpt

An Appwrite Init 2026 recap of all five days of launches, from Appwrite 2.0 and native PostgreSQL to VectorsDB, S3 support, Firewall, OAuth2, and Domains.

## Product Engineering for PMs, Part 3: Build a SaaS App Without Coding

DevFeed: [Product Engineering for PMs, Part 3: Build a SaaS App Without Coding](<https://devfeed.tech/articles/product-engineering-for-pms-part-3-build-a-saas-app-without-coding-39186.md>)

Original publisher: [Read original article](<https://www.productcompass.pm/p/product-engineering-for-pms-part-3>)

Author: Paweł Huryn

Published: 2026-09-14T19:12:58Z

Content type: tutorial

Language: en

Sources: [The Product Compass](<https://devfeed.tech/sources/the-product-compass.md>)

Topics: [Software as a service](<https://devfeed.tech/topics/saas.md>), [web applications](<https://devfeed.tech/topics/web-applications.md>), [stripe](<https://devfeed.tech/topics/stripe.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Security](<https://devfeed.tech/topics/security.md>), [agentic-engineering](<https://devfeed.tech/topics/agentic-engineering.md>)

Tags: [agentic](<https://devfeed.tech/tags/agentic.md>), [application](<https://devfeed.tech/tags/application.md>), [coding](<https://devfeed.tech/tags/coding.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [payments](<https://devfeed.tech/tags/payments.md>), [saas](<https://devfeed.tech/tags/saas.md>), [saas-app](<https://devfeed.tech/tags/saas-app.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

A tutorial for product managers on building a multi-tenant SaaS web application without coding, including real Stripe payments, a web application firewall, and agentic reviews focused on logic, security, and performance.

### Source excerpt

Enable real Stripe payments, add a web application firewall (Cloudflare or Netlify), and run agentic reviews of a real multi-tenant SaaS app: logic, security, performance. No coding.

## The 15 Best Chinese Live Streaming Platforms (ICP Licensed and Native) for 2026

DevFeed: [The 15 Best Chinese Live Streaming Platforms (ICP Licensed and Native) for 2026](<https://devfeed.tech/articles/the-15-best-chinese-live-streaming-platforms-icp-licensed-and-native-for-2026-38026.md>)

Original publisher: [Read original article](<https://www.dacast.com/blog/live-video-streaming-and-hosting-in-china/>)

Author: Jon Whitehead

Published: 2026-09-11T07:30:31Z

Content type: comparison

Language: en

Sources: [DaCast](<https://devfeed.tech/sources/dacast.md>)

Topics: [Streaming](<https://devfeed.tech/topics/streaming.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Sports](<https://devfeed.tech/topics/sports.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [china](<https://devfeed.tech/tags/china.md>), [comparison](<https://devfeed.tech/tags/comparison.md>), [e-commerce](<https://devfeed.tech/tags/e-commerce.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [gaming](<https://devfeed.tech/tags/gaming.md>), [live-streaming](<https://devfeed.tech/tags/live-streaming.md>), [platform](<https://devfeed.tech/tags/platform.md>), [selection](<https://devfeed.tech/tags/selection.md>), [streaming](<https://devfeed.tech/tags/streaming.md>), [the-video-experts-blog](<https://devfeed.tech/tags/the-video-experts-blog.md>)

### AI overview

This comparison reviews 15 live-streaming platforms for reaching audiences in China, covering international ICP-licensed services and native Chinese platforms. It discusses market scale, platform selection, the Great Firewall, and legal and regulatory considerations.

### Source excerpt

Dacast Editorial Team | Reviewed by Jon Whitehead, COO at Dacast | Updated September 2026 Live streaming in China isn't a niche channel, it's one of the most competitive, fastest-moving live-streaming markets in the world, and which platform you choose to reach it matters just as much as the decision to enter it in the [...] The post The 15 Best Chinese Live Streaming Platforms (ICP Licensed and Native) for 2026 appeared first on Dacast.

## Scality Maestro 1.1 Manages ARTESCA Fleets From One Console With No VPN Into Customer Sites

DevFeed: [Scality Maestro 1.1 Manages ARTESCA Fleets From One Console With No VPN Into Customer Sites](<https://devfeed.tech/articles/scality-maestro-1-1-manages-artesca-fleets-from-one-console-with-no-vpn-into-customer-sites-12377.md>)

Original publisher: [Read original article](<https://www.storagereview.com/news/scality-maestro-1-1-manages-artesca-fleets-from-one-console-with-no-vpn-into-customer-sites>)

Author: Harold Fritts

Published: 2026-09-10T20:17:01Z

Content type: news

Language: en

Sources: [StorageReview.com](<https://devfeed.tech/sources/storagereview-com.md>)

Topics: [cloud-infrastructure](<https://devfeed.tech/topics/cloud-infrastructure.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>), [Tooling](<https://devfeed.tech/topics/tooling.md>), [Deployment](<https://devfeed.tech/topics/deployment.md>), [Server](<https://devfeed.tech/topics/server.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Network](<https://devfeed.tech/topics/network.md>), [Disk image](<https://devfeed.tech/topics/disk-image.md>)

Tags: [data-protection](<https://devfeed.tech/tags/data-protection.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [network](<https://devfeed.tech/tags/network.md>), [platform](<https://devfeed.tech/tags/platform.md>), [production](<https://devfeed.tech/tags/production.md>), [scale](<https://devfeed.tech/tags/scale.md>), [server](<https://devfeed.tech/tags/server.md>), [software](<https://devfeed.tech/tags/software.md>), [tooling](<https://devfeed.tech/tags/tooling.md>), [updates](<https://devfeed.tech/tags/updates.md>), [upgrade](<https://devfeed.tech/tags/upgrade.md>)

### AI overview

Scality has generally released Maestro 1.1, a fleet management platform for service providers operating many Scality ARTESCA object storage deployments. It provides centralized monitoring, software and server firmware updates, capacity tracking, and automated pay-as-you-go billing without requiring VPN tunnels or customer-side network reconfiguration. Each deployment connects outbound to Maestro, which does not connect back into customer networks.

### Source excerpt

Scality has made Maestro 1.1 generally available, a fleet management platform for service providers running large numbers of Scality ARTESCA object storage deployments on behalf of their customers. The target is the backup-as-a-service business that starts as a handful of ARTESCA clusters and grows to tens or hundreds, each sitting inside a different customer's network The post Scality Maestro 1.1 Manages ARTESCA Fleets From One Console With No VPN Into Customer Sites appeared first on StorageReview.com.

## Announcing Appwrite Firewall: traffic control for your project

DevFeed: [Announcing Appwrite Firewall: traffic control for your project](<https://devfeed.tech/articles/announcing-appwrite-firewall-traffic-control-for-your-project-16413.md>)

Original publisher: [Read original article](<https://appwrite.io/blog/post/announcing-appwrite-firewall>)

Author: Arnab Chatterjee

Published: 2026-09-04T00:00:00Z

Content type: release

Language: en

Sources: [Appwrite Blog](<https://devfeed.tech/sources/appwrite-blog.md>)

Topics: [Appwrite](<https://devfeed.tech/topics/appwrite.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [API](<https://devfeed.tech/topics/api.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [Back end](<https://devfeed.tech/topics/backend.md>)

Tags: [api](<https://devfeed.tech/tags/api.md>), [backend](<https://devfeed.tech/tags/backend.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [preview](<https://devfeed.tech/tags/preview.md>), [products](<https://devfeed.tech/tags/products.md>), [project](<https://devfeed.tech/tags/project.md>)

### AI overview

Appwrite announces Firewall, a project-level traffic control feature built into Appwrite Cloud. It lets developers define rules for APIs, Functions, and Sites using request conditions such as IP address, path, headers, query parameters, user agent, and location. Rules can allow, deny, challenge, rate-limit, or redirect traffic, with priority ordering and an impact preview before deployment.

### Source excerpt

Appwrite Firewall adds project-level traffic rules to Appwrite Cloud. Deny, bypass, challenge, rate limit, or redirect requests to your API, Functions, and Sites, with an impact preview before every change.

## Fixed window, sliding window, or token bucket? Choosing a rate limit strategy in Appwrite Firewall

DevFeed: [Fixed window, sliding window, or token bucket? Choosing a rate limit strategy in Appwrite Firewall](<https://devfeed.tech/articles/fixed-window-sliding-window-or-token-bucket-choosing-a-rate-limit-strategy-in-appwrite-firewall-16479.md>)

Original publisher: [Read original article](<https://appwrite.io/blog/post/firewall-rate-limit-strategies>)

Author: Atharva Deosthale

Published: 2026-09-04T00:00:00Z

Content type: tutorial

Language: en

Sources: [Appwrite Blog](<https://devfeed.tech/sources/appwrite-blog.md>)

Topics: [Appwrite](<https://devfeed.tech/topics/appwrite.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Algorithms](<https://devfeed.tech/topics/algorithms.md>), [HTTP](<https://devfeed.tech/topics/http.md>), [client](<https://devfeed.tech/topics/client.md>)

Tags: [firewall](<https://devfeed.tech/tags/firewall.md>), [http](<https://devfeed.tech/tags/http.md>), [rate-limiting](<https://devfeed.tech/tags/rate-limiting.md>), [security](<https://devfeed.tech/tags/security.md>), [strategy](<https://devfeed.tech/tags/strategy.md>)

### AI overview

This article explains the fixed window, sliding window, and token bucket rate-limiting strategies supported by Appwrite Firewall. It compares how they handle bursts and time-window boundaries, describes IP- and User ID-based limits, and explains how to choose a strategy.

### Source excerpt

Appwrite Firewall rate limit rules support three strategies. Learn how fixed window, sliding window, and token bucket work, where each one breaks down, and how to pick the right one for your traffic.

## Announcing Appwrite 2.0: a new foundation for your apps

DevFeed: [Announcing Appwrite 2.0: a new foundation for your apps](<https://devfeed.tech/articles/announcing-appwrite-2-0-a-new-foundation-for-your-apps-16405.md>)

Original publisher: [Read original article](<https://appwrite.io/blog/post/announcing-appwrite-2>)

Author: Eldad Fux

Published: 2026-08-31T00:00:00Z

Content type: release

Language: en

Sources: [Appwrite Blog](<https://devfeed.tech/sources/appwrite-blog.md>)

Topics: [Appwrite](<https://devfeed.tech/topics/appwrite.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [OAuth](<https://devfeed.tech/topics/oauth.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [MySQL](<https://devfeed.tech/topics/mysql.md>), [PostgreSQL](<https://devfeed.tech/topics/postgresql.md>)

Tags: [feature](<https://devfeed.tech/tags/feature.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [mysql](<https://devfeed.tech/tags/mysql.md>), [oauth](<https://devfeed.tech/tags/oauth.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [products](<https://devfeed.tech/tags/products.md>), [release](<https://devfeed.tech/tags/release.md>), [s3](<https://devfeed.tech/tags/s3.md>)

### AI overview

Appwrite 2.0 is a major platform release with a new engine, rebuilt Console, relational, schemaless, and vector data support, native PostgreSQL and MySQL engines, S3-addressable storage, OAuth 2.1 and OpenID Connect support, and organization-level Domains and Firewall.

### Source excerpt

Appwrite 2.0 brings a new engine, a rebuilt Console, five database types, an S3 API, an OAuth 2.1 server, and organization-level Domains and Firewall.

## Security Caveat: Locked out of my server while traveling

DevFeed: [Security Caveat: Locked out of my server while traveling](<https://devfeed.tech/articles/security-caveat-locked-out-of-my-server-while-traveling-32362.md>)

Original publisher: [Read original article](<https://joshtronic.com/2026/08/30/security-caveat-locked-out-server-travel/>)

Author: Josh Sherman

Published: 2026-08-30T00:00:00Z

Content type: opinion

Language: en

Sources: [Josh Sherman](<https://devfeed.tech/sources/josh-sherman.md>)

Topics: [Self-hosted](<https://devfeed.tech/topics/self-hosted.md>), [Security](<https://devfeed.tech/topics/security.md>), [Linode](<https://devfeed.tech/topics/linode.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [hosting](<https://devfeed.tech/topics/hosting.md>), [DDoS](<https://devfeed.tech/topics/ddos.md>)

Tags: [command](<https://devfeed.tech/tags/command.md>), [ddos](<https://devfeed.tech/tags/ddos.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [hosting](<https://devfeed.tech/tags/hosting.md>), [linode](<https://devfeed.tech/tags/linode.md>), [security](<https://devfeed.tech/tags/security.md>), [self-hosting](<https://devfeed.tech/tags/self-hosting.md>)

### AI overview

A personal account of being unable to access a self-hosted server while traveling because firewall rules restricted services and ports to specific IP addresses. The author describes using Linode's web-hosted shell to add a temporary nomadic IP address to the allow list, then plans to remove it afterward.

### Source excerpt

I'm still on my self-hosting kick as of late, while also questioning my life choices around hosting my own git forge. The last week or so has included what appears to be a DDoS attack rather than some coordinated scraping effort by a sketchy LLM company. Open source will prevail, even if I'm being stubborn about giving in and setting up Anubis. WordPress has been its own other adventure, but this isn't meant to be a post about those security caveats. I'll save those for another week. The current dilemma is that I'm far from home, ~30 hours away up in Rhode Island. I'm sitting at Audrey's Coffee House & Lounge, where it was a bit too early to order a BLT. As I sat down to knock out a quick blog post, I realized very quickly that I didn't think things through as well as I had thought. I keep my servers pretty well hardened, including but not limited to limiting access to certain services / ports to specific IP addresses. This tends to not be much of a problem. I do a lot of work from the house, which in itself is a problem I want to remedy in the near future. I also boss agents around remotely, but they are all homebodies as well. Since I like to stay as close to the server as possible, I try to not introduce managed services except where I feel it's absolutely necessary. In this scenario, I use iptables via the ufw command. I don't run a large enough fleet that I'd feel like leveraging Linode's firewall would be beneficial. Path of least resistance today would be to simply compose a blog post and get it live when I'm back home. Could probably just ask one of my friendly robots to take the markdown file and get it out there for me too. But alas, I would prefer to figure out how to pull this off, then blog about it. All while thinking through alternatives so future Josh can look back at this post and ask, "so why didn't you actually do anything you talked about in this post?" This dance probably looks about the same with most modern VPS hosting providers, but my story

## The lingering legacy of 'reserved' ports

DevFeed: [The lingering legacy of 'reserved' ports](<https://devfeed.tech/articles/the-lingering-legacy-of-reserved-ports-10853.md>)

Original publisher: [Read original article](<https://blog.apnic.net/2026/08/28/the-lingering-legacy-of-reserved-ports/>)

Author: George Michaelson

Published: 2026-08-27T23:29:48Z

Content type: article

Language: en

Sources: [APNIC Blog](<https://devfeed.tech/sources/apnic-blog.md>)

Topics: [Protocol (disambiguation)](<https://devfeed.tech/topics/protocol.md>), [Network](<https://devfeed.tech/topics/network.md>), [Process](<https://devfeed.tech/topics/process.md>), [Operating system](<https://devfeed.tech/topics/operating-system.md>), [Unix](<https://devfeed.tech/topics/unix.md>), [ssh](<https://devfeed.tech/topics/ssh.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Internet](<https://devfeed.tech/topics/internet.md>)

Tags: [dns](<https://devfeed.tech/tags/dns.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [history](<https://devfeed.tech/tags/history.md>), [internet](<https://devfeed.tech/tags/internet.md>), [network](<https://devfeed.tech/tags/network.md>), [ntp](<https://devfeed.tech/tags/ntp.md>), [opinion](<https://devfeed.tech/tags/opinion.md>), [process](<https://devfeed.tech/tags/process.md>), [processes](<https://devfeed.tech/tags/processes.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [systems](<https://devfeed.tech/tags/systems.md>), [tech-matters](<https://devfeed.tech/tags/tech-matters.md>)

### AI overview

An exploration of why reserved TCP and UDP ports persist, tracing conventions such as ports 22, 53, 80, and 443 to early Internet services on multi-user systems. It explains the relationship between ports, protocol-specific daemons, operating-system administration, and modern firewall and service-discovery practices.

### Source excerpt

Modern service discovery mechanisms increasingly allow services to run on arbitrary ports, yet DNS may remain the one protocol that cannot fully escape its dependency on the long-established convention of port 53.

## AWS Network Firewall now supports rule hit count

DevFeed: [AWS Network Firewall now supports rule hit count](<https://devfeed.tech/articles/aws-network-firewall-now-supports-rule-hit-count-4677.md>)

Original publisher: [Read original article](<https://aws.amazon.com/blogs/security/aws-network-firewall-now-supports-rule-hit-count/>)

Author: Preetkumar Shah

Published: 2026-08-20T18:40:20Z

Content type: article

Language: en

Sources: [AWS Security Blog](<https://devfeed.tech/sources/aws-security-blog.md>)

Topics: [Firewall](<https://devfeed.tech/topics/firewall.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Amazon CloudWatch Logs](<https://devfeed.tech/topics/amazon-cloudwatch-logs.md>), [Network](<https://devfeed.tech/topics/network.md>), [Security](<https://devfeed.tech/topics/security.md>), [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [log management](<https://devfeed.tech/topics/log-management.md>), [Incident response](<https://devfeed.tech/topics/incident-response.md>)

Tags: [amazon-cloudwatch](<https://devfeed.tech/tags/amazon-cloudwatch.md>), [amazon-cloudwatch-logs](<https://devfeed.tech/tags/amazon-cloudwatch-logs.md>), [amazon-s3](<https://devfeed.tech/tags/amazon-s3.md>), [announcements](<https://devfeed.tech/tags/announcements.md>), [aws](<https://devfeed.tech/tags/aws.md>), [aws-network-firewall](<https://devfeed.tech/tags/aws-network-firewall.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [incident](<https://devfeed.tech/tags/incident.md>), [incident-response](<https://devfeed.tech/tags/incident-response.md>), [intermediate-200](<https://devfeed.tech/tags/intermediate-200.md>), [logs](<https://devfeed.tech/tags/logs.md>), [network](<https://devfeed.tech/tags/network.md>), [s3](<https://devfeed.tech/tags/s3.md>), [security](<https://devfeed.tech/tags/security.md>), [security-blog](<https://devfeed.tech/tags/security-blog.md>), [security-identity-compliance](<https://devfeed.tech/tags/security-identity-compliance.md>), [storage](<https://devfeed.tech/tags/storage.md>)

### AI overview

AWS Network Firewall now provides rule hit counts for stateful rules, using alert-log data to show how often rules match network traffic. The feature helps teams identify unused rules, support incident response, and demonstrate security-control effectiveness for compliance.

### Source excerpt

As firewall rule sets grow in complexity, security teams face a common challenge: manual log analysis is used to determine which rules are actively matching traffic and which are consuming capacity without being triggered. This lack of visibility creates operational and compliance gaps. Organizations with governance policies that require removal of dormant rules after a [...]

## My Home Lab, V2

DevFeed: [My Home Lab, V2](<https://devfeed.tech/articles/my-home-lab-v2-10752.md>)

Original publisher: [Read original article](<https://eduuh.com/blog/my-home-lab-v2>)

Author: EduuhMuraya

Published: 2026-08-17T00:00:00Z

Content type: article

Language: en

Sources: [EduuhMuraya](<https://devfeed.tech/sources/eduuhmuraya.md>)

Topics: [Homelab](<https://devfeed.tech/topics/homelab.md>), [Home Assistant](<https://devfeed.tech/topics/home-assistant.md>), [Network](<https://devfeed.tech/topics/network.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Internet of things](<https://devfeed.tech/topics/iot.md>), [MQTT](<https://devfeed.tech/topics/mqtt.md>), [Server](<https://devfeed.tech/topics/server.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>)

Tags: [firewall](<https://devfeed.tech/tags/firewall.md>), [home-lab](<https://devfeed.tech/tags/home-lab.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [network](<https://devfeed.tech/tags/network.md>), [networks](<https://devfeed.tech/tags/networks.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [smart-home](<https://devfeed.tech/tags/smart-home.md>), [usb](<https://devfeed.tech/tags/usb.md>)

### AI overview

An updated home lab replaces a multi-node Kubernetes setup with one mini PC running Proxmox. The article covers segmented networks enforced by OPNsense, firewall testing from within each segment, and a solar-power system integrated with Home Assistant through USB and MQTT. It also describes load-shedding and shutdown safeguards during battery depletion.

### Source excerpt

The Kubernetes cluster is gone. One mini PC runs the whole house now: four network segments, a solar inverter Home Assistant can act on, and a guard that shuts the servers down before the battery does.

## The Checks That Lied

DevFeed: [The Checks That Lied](<https://devfeed.tech/articles/the-checks-that-lied-10744.md>)

Original publisher: [Read original article](<https://eduuh.com/blog/checks-that-lied>)

Author: EduuhMuraya

Published: 2026-08-14T00:00:00Z

Content type: article

Language: en

Sources: [EduuhMuraya](<https://devfeed.tech/sources/eduuhmuraya.md>)

Topics: [networking](<https://devfeed.tech/topics/networking.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Routing (disambiguation)](<https://devfeed.tech/topics/routing.md>), [Networks](<https://devfeed.tech/topics/networks.md>), [Pi-hole](<https://devfeed.tech/topics/pihole.md>)

Tags: [automation](<https://devfeed.tech/tags/automation.md>), [dns](<https://devfeed.tech/tags/dns.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [network](<https://devfeed.tech/tags/network.md>), [opnsense](<https://devfeed.tech/tags/opnsense.md>), [proxmox](<https://devfeed.tech/tags/proxmox.md>), [routing](<https://devfeed.tech/tags/routing.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [servers](<https://devfeed.tech/tags/servers.md>)

### AI overview

A home-network segmentation test produced misleading green results because the checks did not reliably measure the firewall or connectivity. The article describes routing around the firewall through a dual-homed Proxmox host and a DNS check that treated resolver failures as successful output.

### Source excerpt

I segmented my network, wrote tests to prove it, and watched the tests pass while measuring nothing at all. Then the same disease turned up in my home automation, and left a freezer switched off for thirteen hours in a house full of green ticks.

## Inside the Vercel intern experience

DevFeed: [Inside the Vercel intern experience](<https://devfeed.tech/articles/inside-the-vercel-intern-experience-758.md>)

Original publisher: [Read original article](<https://vercel.com/blog/inside-the-vercel-intern-experience>)

Author: Robin Lee

Published: 2026-08-13T04:00:00Z

Content type: article

Language: en

Sources: [Vercel News](<https://devfeed.tech/sources/vercel-news.md>)

Topics: [Vercel](<https://devfeed.tech/topics/vercel.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [API](<https://devfeed.tech/topics/api.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Security](<https://devfeed.tech/topics/security.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [dashboards](<https://devfeed.tech/topics/dashboards.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [api](<https://devfeed.tech/tags/api.md>), [cli](<https://devfeed.tech/tags/cli.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [security](<https://devfeed.tech/tags/security.md>), [ui](<https://devfeed.tech/tags/ui.md>), [vercel](<https://devfeed.tech/tags/vercel.md>)

### AI overview

Vercel describes its Winter '26 intern experience, highlighting interns who shipped production features across the CDN, dashboard, CLI, Firewall, Security, v0, financial infrastructure, and AI Gateway products.

### Source excerpt

The best way to learn is by shipping product to users in production, and that's why we don't treat our interns as temporary guests. Every intern at Vercel is expected to operate like a core part of our engineering team from day one. This past winter, we welcomed a small cohort of those interns to our headquarters in San Francisco. Over an intense four months, they contributed to some of our most important products: the CDN, v0, financial infrastructure, AI Gateway, and more. They shipped features used by millions, helped close the gap for enterprise deals, and in more than a few cases, left a mark that will outlast their time here. Meet the Winter '26 intern cohortYash Kothari, CDN Team University of Waterloo What Yash shipped: Yash's internship spanned the full CDN stack, from infrastructure to CLI to UI in the dashboard. His first major project was Project-level routing, which is part of the new CDN tab in the Vercel dashboard. This feature lets customers update routing rules, including redirects, rewrites, and header transforms, from the dashboard, API, CLI, or SDK, without needing to redeploy their project or touch a single line of code. Yash built the underlying API endpoints (including a staging/publish workflow), the vercel routes CLI commands, and contributed AI-powered route generation. Right after launch, hundreds of teams immediately adopted it and created thousands of rules. "One of my favorite things about my internship was that at Vercel you get a lot of autonomy and ownership," Yash said. "I hopped on calls with enterprise customers, saw my work featured on Vercel's changelog, and demoed my work in a live YouTube community session." In the second half of his internship, Yash worked on Vercel's Firewall and Security products. He shipped the vercel firewall CLI command, enabling users and AI agents to configure custom rules, IP blocks, and firewall controls directly from the terminal. He also built an AI-powered Firewall Rule Builder that lets users des

## New setup page after domain checkout

DevFeed: [New setup page after domain checkout](<https://devfeed.tech/articles/new-setup-page-after-domain-checkout-1026.md>)

Original publisher: [Read original article](<https://vercel.com/changelog/new-setup-page-after-domain-checkout>)

Author: Can Temizyurek

Published: 2026-08-05T17:00:00Z

Content type: release

Language: en

Sources: [Vercel News](<https://devfeed.tech/sources/vercel-news.md>)

Topics: [Vercel](<https://devfeed.tech/topics/vercel.md>), [Routing (disambiguation)](<https://devfeed.tech/topics/routing.md>), [Caching](<https://devfeed.tech/topics/caching.md>), [DDoS](<https://devfeed.tech/topics/ddos.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Amazon Route 53](<https://devfeed.tech/topics/amazon-route-53.md>), [Git](<https://devfeed.tech/topics/git.md>), [Template](<https://devfeed.tech/topics/template.md>)

Tags: [cache](<https://devfeed.tech/tags/cache.md>), [cdn](<https://devfeed.tech/tags/cdn.md>), [checkout](<https://devfeed.tech/tags/checkout.md>), [ddos](<https://devfeed.tech/tags/ddos.md>), [dns](<https://devfeed.tech/tags/dns.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [git](<https://devfeed.tech/tags/git.md>), [google](<https://devfeed.tech/tags/google.md>), [routing](<https://devfeed.tech/tags/routing.md>), [vercel](<https://devfeed.tech/tags/vercel.md>)

### AI overview

Vercel has introduced a post-checkout setup page for domain purchases. It tracks registration status and provides guided actions for deploying or connecting projects, proxying or redirecting existing sites, and configuring email DNS records.

### Source excerpt

Buying a domain on Vercel now takes you to a setup page that tracks registration live, with direct paths to deploy a new project, connect an existing one, proxy or redirect a site you already run, or set up email. Registration can take a few minutes. Each setup action unlocks as soon as the domain is ready. If registration fails, the page shows what went wrong and the status of your refund. Deploy a new project or connect an existing one Deploy something opens project creation with the domain preselected. Connect a Git repository, prompt with v0, or start from a template, and the domain is attached when the project deploys. Connect an existing project attaches the domain to a project you pick from your team. Proxy or redirect a site you already run Enter an origin to proxy traffic to, and requests to the domain route through Vercel's CDN. Vercel will cache applicable requests at the edge, and Vercel Firewall's automated DDoS protections will automatically run. Enter a URL to redirect, and visitors are forwarded there. In both cases, Vercel creates a project to handle the routing and configures it for you. Set up email with DNS presets Choose your email provider and Vercel adds the DNS records it needs. Presets are available for Google Workspace, Outlook, iCloud, Proton Mail, Zoho, Mailgun, and ImprovMX. There's also a preset for using the domain as your Bluesky handle. If you'd rather configure records yourself, Manage DNS records opens the domain's DNS records page. Search for a domain at vercel.com/domains to get started. Read more

## Full Sandbox egress firewall now available on Hobby plan

DevFeed: [Full Sandbox egress firewall now available on Hobby plan](<https://devfeed.tech/articles/full-sandbox-egress-firewall-now-available-on-hobby-plan-940.md>)

Original publisher: [Read original article](<https://vercel.com/changelog/full-sandbox-egress-firewall-now-available-on-hobby-plan>)

Author: Brandon Tuttle

Published: 2026-08-05T00:00:00Z

Content type: release

Language: en

Sources: [Vercel News](<https://devfeed.tech/sources/vercel-news.md>)

Topics: [Firewall](<https://devfeed.tech/topics/firewall.md>), [Vercel](<https://devfeed.tech/topics/vercel.md>), [Network](<https://devfeed.tech/topics/network.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [cli](<https://devfeed.tech/tags/cli.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [free](<https://devfeed.tech/tags/free.md>), [network](<https://devfeed.tech/tags/network.md>), [policy](<https://devfeed.tech/tags/policy.md>), [sandbox](<https://devfeed.tech/tags/sandbox.md>), [secrets](<https://devfeed.tech/tags/secrets.md>), [update](<https://devfeed.tech/tags/update.md>), [vercel](<https://devfeed.tech/tags/vercel.md>)

### AI overview

Vercel has made all Sandbox firewall features available on the Hobby plan. The update provides network isolation, outbound request controls, secret handling, domain and IP rules, and live policy updates through the Sandbox CLI.

### Source excerpt

All Vercel Sandbox firewall features are now available on the Hobby plan. This brings the same network isolation that protects production workloads to the free tier, giving Hobby builders control over exactly what leaves the sandbox while keeping secrets out of the code entirely. Because the firewall attaches secrets to outbound requests itself, sandboxed code can call authenticated services like AI Gateway without ever seeing the token. Define allow-all, deny-all, or custom network policies with domain and IP-based rules, using matchers to scope each rule by path, method, query string, or headers. Custom policies can safely broker credentials or proxy requests through infrastructure you control. To get started, pass a networkPolicy when you create a sandbox. The Sandbox CLI manages the same policies, letting you update them live without restarting the sandbox. Network policies reduce data exfiltration risk when running untrusted or AI-generated code. Learn more in the Sandbox firewall documentation. Read more

## Vercel WAF for Blob is now generally available

DevFeed: [Vercel WAF for Blob is now generally available](<https://devfeed.tech/articles/vercel-waf-for-blob-is-now-generally-available-1188.md>)

Original publisher: [Read original article](<https://vercel.com/changelog/vercel-waf-for-blob-is-now-generally-available>)

Author: Agustin Falco

Published: 2026-08-03T17:00:00Z

Content type: release

Language: en

Sources: [Vercel News](<https://devfeed.tech/sources/vercel-news.md>)

Topics: [Firewall](<https://devfeed.tech/topics/firewall.md>), [Vercel](<https://devfeed.tech/topics/vercel.md>), [Security](<https://devfeed.tech/topics/security.md>), [Edge](<https://devfeed.tech/topics/edge.md>)

Tags: [documentation](<https://devfeed.tech/tags/documentation.md>), [edge](<https://devfeed.tech/tags/edge.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [production](<https://devfeed.tech/tags/production.md>), [security](<https://devfeed.tech/tags/security.md>), [vercel](<https://devfeed.tech/tags/vercel.md>)

### AI overview

Vercel WAF for Blob is generally available for production use on all plans. It protects Blob stores with custom firewall rules that can deny, challenge, or rate-limit requests based on IP address, country, and path. Rules run at Vercel's edge, blocking unwanted requests before data transfer and billing occur.

### Source excerpt

Vercel WAF for Blob is now generally available and supported for production use on all plans. If you protected a store during the beta, nothing has changed: your rules and setup carry over exactly as they are. Vercel WAF protects a Blob store with custom rules, the same kind you use to guard your deployments. Rules that match on properties like IP address, country, and path can deny, challenge, or rate limit requests to your stored objects. This requires no changes to your code, your blob URLs, or how you use @vercel/blob. Rules are evaluated at Vercel's edge, so a denied request is turned away before any data transfer occurs. Unwanted traffic to AI-generated media, user uploads, or paid downloads never reaches your store and never generates a bill. To enable protection, open your Blob store's Settings tab, and in the Firewall section select Protect your store, then Enable firewall. This connects the store to a dedicated team-wide project where your Blob firewall rules live, shared by every store you protect. Read the Blob security documentation to protect a store. Read more

## tcpdump: analiza tráfico de red en terminal

DevFeed: [tcpdump: analiza tráfico de red en terminal](<https://devfeed.tech/articles/tcpdump-analiza-trafico-de-red-en-terminal-34085.md>)

Original publisher: [Read original article](<https://tengoping.com/blog/tcpdump-analiza-trafico-red-terminal/>)

Author: Antonio Pérez

Published: 2026-08-01T12:00:00Z

Content type: tutorial

Language: es

Sources: [tengoping.com](<https://devfeed.tech/sources/tengoping-com.md>)

Topics: [Command-line interface](<https://devfeed.tech/topics/cli.md>), [Linux](<https://devfeed.tech/topics/linux.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>)

Tags: [firewall](<https://devfeed.tech/tags/firewall.md>), [linux](<https://devfeed.tech/tags/linux.md>), [port](<https://devfeed.tech/tags/port.md>), [resolver](<https://devfeed.tech/tags/resolver.md>), [tcp](<https://devfeed.tech/tags/tcp.md>), [terminal](<https://devfeed.tech/tags/terminal.md>)

### AI overview

A practical guide to using tcpdump from the terminal to capture and inspect network traffic, apply filters, interpret TCP packets, and save or reread pcap files while troubleshooting network problems.

### Source excerpt

Guía práctica de tcpdump: sintaxis de filtros, lectura de paquetes y captura en archivos pcap para depurar problemas de red desde terminal.

## My Plan for an All-Alta Labs Home Network

DevFeed: [My Plan for an All-Alta Labs Home Network](<https://devfeed.tech/articles/my-plan-for-an-all-alta-labs-home-network-40192.md>)

Original publisher: [Read original article](<https://blog.j2sw.com/technology/my-plan-for-an-all-alta-labs-home-network/>)

Author: j2sw

Published: 2026-07-29T14:40:00Z

Content type: opinion

Language: en

Sources: [Justin Wilson (j2sw)](<https://devfeed.tech/sources/justin-wilson-j2sw.md>)

Topics: [Network](<https://devfeed.tech/topics/network.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>), [Wi-Fi](<https://devfeed.tech/topics/wi-fi.md>), [Internet](<https://devfeed.tech/topics/internet.md>), [DHCP](<https://devfeed.tech/topics/dhcp.md>)

Tags: [access-points](<https://devfeed.tech/tags/access-points.md>), [alta-labs](<https://devfeed.tech/tags/alta-labs.md>), [altapass](<https://devfeed.tech/tags/altapass.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [dhcp](<https://devfeed.tech/tags/dhcp.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [home-networking](<https://devfeed.tech/tags/home-networking.md>), [internet](<https://devfeed.tech/tags/internet.md>), [network](<https://devfeed.tech/tags/network.md>), [network-engineering-resources](<https://devfeed.tech/tags/network-engineering-resources.md>), [network-switches](<https://devfeed.tech/tags/network-switches.md>), [poe](<https://devfeed.tech/tags/poe.md>), [reviews](<https://devfeed.tech/tags/reviews.md>), [route10](<https://devfeed.tech/tags/route10.md>), [technology-industry-commentary](<https://devfeed.tech/tags/technology-industry-commentary.md>), [vlans](<https://devfeed.tech/tags/vlans.md>), [wi-fi](<https://devfeed.tech/tags/wi-fi.md>)

### AI overview

Justin Wilson outlines a planned Alta Labs home network using the Route10 router, PoE switches, and strategically placed access points. The article compares hardware options for different home sizes, device counts, uplink speeds, and coverage needs.

### Source excerpt

Being in the ISP world I see the home router and network cause a majority of the problems blamed on the ISP. Most home networks put the router, switch, firewall, and Wi-Fi radios into one do-it-all box. This can be underpowered in terms of both processing power and Wi-Fi signal strength. In this post, I ... Read more The post My Plan for an All-Alta Labs Home Network appeared first on Justin Wilson (j2sw).

## Adding a backup Internet WAN on my OPNsense Router

DevFeed: [Adding a backup Internet WAN on my OPNsense Router](<https://devfeed.tech/articles/adding-a-backup-internet-wan-on-my-opnsense-router-10477.md>)

Original publisher: [Read original article](<https://www.jeffgeerling.com/blog/2026/opnsense-backup-internet-gateway/>)

Author: jeff@jeffgeerling.com (Jeff Geerling)

Published: 2026-07-23T21:00:00Z

Content type: tutorial

Language: en

Sources: [Jeff Geerling](<https://devfeed.tech/sources/jeff-geerling.md>)

Topics: [Firewall](<https://devfeed.tech/topics/firewall.md>), [networking](<https://devfeed.tech/topics/networking.md>), [configuration](<https://devfeed.tech/topics/configuration.md>), [5G](<https://devfeed.tech/topics/5g.md>), [Software](<https://devfeed.tech/topics/software.md>)

Tags: [5g](<https://devfeed.tech/tags/5g.md>), [backup](<https://devfeed.tech/tags/backup.md>), [ethernet](<https://devfeed.tech/tags/ethernet.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [internet](<https://devfeed.tech/tags/internet.md>), [networking](<https://devfeed.tech/tags/networking.md>), [opnsense](<https://devfeed.tech/tags/opnsense.md>), [outage](<https://devfeed.tech/tags/outage.md>), [router](<https://devfeed.tech/tags/router.md>)

### AI overview

A practical guide to adding a portable 5G gateway as a backup WAN on an OPNsense router. It covers assigning a second Ethernet interface, configuring DHCP and outbound NAT, and manually changing gateway priorities to fail over between connections.

### Source excerpt

AKA "Spectrum has gone down two weeks in a row and I'm sick of it". I've been borrowing a portable 5G gateway from my Dad for a few weeks, for testing... and two weeks in a row, I've used it as a backup Internet option, since my Spectrum Business cable Internet has gone down. And yes, I'd get AT&T Fiber if I had the option, sadly they don't yet provide service at my studio. So I'm stuck with only one high speed wired provider. I may add on my own 5G backup Internet connection in the future, but we're getting off track.

## Securing the Agent DLC: A Practical Guide

DevFeed: [Securing the Agent DLC: A Practical Guide](<https://devfeed.tech/articles/securing-the-agent-dlc-a-practical-guide-13467.md>)

Original publisher: [Read original article](<https://www.harness.io/blog/securing-the-agent-dlc>)

Author: Rahul Sood

Published: 2026-07-21T00:00:00Z

Content type: article

Language: en

Sources: [Harness Blog](<https://devfeed.tech/sources/harness-blog.md>)

Topics: [Development](<https://devfeed.tech/topics/development.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Testing](<https://devfeed.tech/topics/testing.md>), [observability](<https://devfeed.tech/topics/observability.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Model Context Protocol](<https://devfeed.tech/topics/model-context-protocol.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [observability](<https://devfeed.tech/tags/observability.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>), [testing](<https://devfeed.tech/tags/testing.md>)

### AI overview

Harness presents an Agent Development Lifecycle security approach for AI agents, covering design-time scanning, AI bills of materials, testing, discovery, firewall controls, and runtime observability. The article argues that agents require security practices adapted to their dynamic tool, model, and API connections.

### Source excerpt

Harness secures AI agents from development to runtime with AIBOM, AI testing, discovery, firewall, and observability across the Agent DLC. | Blog

## Want pfSense on Raspberry Pi? These Are the Best Alternatives

DevFeed: [Want pfSense on Raspberry Pi? These Are the Best Alternatives](<https://devfeed.tech/articles/want-pfsense-on-raspberry-pi-these-are-the-best-alternatives-10791.md>)

Original publisher: [Read original article](<https://raspberrytips.com/can-pfsense-run-on-raspberry-pi/>)

Author: Patrick Fromaget

Published: 2026-07-16T01:34:26Z

Content type: tutorial

Language: en

Sources: [RaspberryTips](<https://devfeed.tech/sources/raspberrytips.md>)

Topics: [Firewall](<https://devfeed.tech/topics/firewall.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>), [Network](<https://devfeed.tech/topics/network.md>), [Linux](<https://devfeed.tech/topics/linux.md>)

Tags: [alternatives](<https://devfeed.tech/tags/alternatives.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [guide](<https://devfeed.tech/tags/guide.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [how-to-tutorials](<https://devfeed.tech/tags/how-to-tutorials.md>), [linux](<https://devfeed.tech/tags/linux.md>), [network](<https://devfeed.tech/tags/network.md>), [raspberry-pi](<https://devfeed.tech/tags/raspberry-pi.md>), [raspberry-pi-os](<https://devfeed.tech/tags/raspberry-pi-os.md>), [software](<https://devfeed.tech/tags/software.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

This tutorial explains that pfSense has no official Raspberry Pi release because it is limited to AMD64 architecture. It presents IPFire, OpenWRT, and Raspberry Pi OS as alternatives for building a router firewall on Raspberry Pi hardware.

### Source excerpt

After using pfSense for years at work, I wanted to build a similar firewall at home with a Raspberry Pi. It seemed like the perfect combination: powerful software on inexpensive hardware. After digging into it, I quickly discovered there was one major obstacle. pfSense doesn't have an official release for Raspberry Pi, it's only available...

## Apollo's New API IP Allowlist Policy

DevFeed: [Apollo's New API IP Allowlist Policy](<https://devfeed.tech/articles/apollo-s-new-api-ip-allowlist-policy-23226.md>)

Original publisher: [Read original article](<https://www.apollographql.com/blog/apollos-new-api-ip-allowlist-policy>)

Author: David Glasser

Published: 2026-07-15T12:00:00Z

Content type: release

Language: en

Sources: [Apollo Blog](<https://devfeed.tech/sources/apollo-blog.md>)

Topics: [GraphOS](<https://devfeed.tech/topics/graphos.md>), [API](<https://devfeed.tech/topics/api.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [gateway](<https://devfeed.tech/topics/gateway.md>), [Network](<https://devfeed.tech/topics/network.md>), [configuration](<https://devfeed.tech/topics/configuration.md>)

Tags: [announcement](<https://devfeed.tech/tags/announcement.md>), [api](<https://devfeed.tech/tags/api.md>), [configuration](<https://devfeed.tech/tags/configuration.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [gateway](<https://devfeed.tech/tags/gateway.md>), [graphos](<https://devfeed.tech/tags/graphos.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [installation](<https://devfeed.tech/tags/installation.md>), [network](<https://devfeed.tech/tags/network.md>), [operational](<https://devfeed.tech/tags/operational.md>), [published](<https://devfeed.tech/tags/published.md>), [router](<https://devfeed.tech/tags/router.md>), [schema](<https://devfeed.tech/tags/schema.md>), [trust-center](<https://devfeed.tech/tags/trust-center.md>)

### AI overview

Apollo has published an API IP Allowlist Policy for GraphOS Router and Apollo Gateway deployments that restrict outbound access by IP address. The policy covers Apollo Uplink endpoints, documents their current IP addresses, and promises at least 60 days' notice before adding new IPs. Apollo also plans to add a second IP per covered service no earlier than September 16, 2026.

### Source excerpt

Restricting outbound traffic by IP? GraphOS Router now needs a second Uplink IP allowlisted before September 16, 2026. See what Apollo's new policy covers.

[Next page](<https://devfeed.tech/topics/firewall.md?cursor=WyIyMDI2LTA3LTE1VDEyOjAwOjAwKzAwOjAwIiwgImI3OGE1OTQ0LWZmMTgtNDc4ZS1hZWM0LTRiNjE0ZjBiN2FjZCJd>)