Notes
- Cleanup rules in initialize.fw
- Drop /8's in initialize.fw with --dport 22 to squelch botnets
- Finalize host reporting syntax
- Native munin, less snmpd-only reporting
- Consider logger+hostname alternative for linking source_ip.log with host.
- Could just be an init script entry. Ignore excessive dns updates
- Or another named pipe in syslog-ng to filter requests
Add the rest of NOT keys