Security Basics mailing list archives

Re: Managing Multiple OpenBSD-IP Filter firewalls


From: Ned Fleming <ned () kaw us>
Date: Fri, 28 Mar 2003 13:25:15 -0600



Tim Heagarty wrote:

Hey folks,

I have a potential client that is looking for a way to manage multiple,
up to 50 or so, firewalls built on OpenBSD 2.9 and  IP Filter. I can
imagine a central aggregating console of some kind to consolidate
logging results, status, whatever information can be gleaned from the
boxes themselves plus IP Filter's output and statistics.

These boxes are ancient. OpenBSD 3.3 can be pre-ordered today.

Aggregating the logs is not managing the firewalls. 

If you really want to manage the firewall rule sets, then firewall
builder (www.fwbuilder.org) may be the way to go. It will generate
rules sets for pf, ipf, and ipfilter.




-------------------------------------------------------------------
SurfControl E-mail Filter puts the brakes on spam,
viruses and malicious code. Safeguard your business
critical communications. Download a free 30-day trial:
http://www.surfcontrol.com/go/zsfsbl1


Current thread: