Firewall Wizards mailing list archives

Re: latest firewall tools for linux


From: Jonas Eriksson <je () sekure net>
Date: Thu, 18 May 2000 13:32:10 +0200 (CEST)


And if you want more information about IP Filter check the
ipfilter page:

http://coombs.anu.edu.au/ipfilter/ 

-- 
Jonas Eriksson 
je () sekure net +46-70-6770986
http://www.sekure.net/jonas/

On Tue, 16 May 2000, Roelof JT Jonkman wrote:

Hello,

Just for clarification I guess, but OpenBSD uses Darren Reed's Ipfilter package
which maintains tcp state, and therefore allows you to deny certain things 
pending on the state of the tcp connection. Whereas stock linux with ipchains
is a packetfilter, and it doesn't quite allow you to deny exactly everything.
So in some ways the statement 'openbsd ... happier' may fly in this case, 
although it should probably be 'ipfilter .. happier' ;-)

roel
PS. I recently switched from a bridging/hacked linux firewall to an almost stock
    openbsd box with the same functionality + some.





Current thread: