== Notes == * Cleanup rules in initialize.fw * Drop /8's in initialize.fw with --dport 22 to squelch botnets * Finalize host reporting syntax * Native munin, less snmpd-only reporting * Consider logger+hostname alternative for linking source_ip.log with host. * Could just be an init script entry. Ignore excessive dns updates * Or another named pipe in syslog-ng to filter requests * Add the rest of [[NOT]] keys