Firewall Wizards mailing list archives

Re: ipfwadm X ipchains


From: dwelch () phoneboy com
Date: 20 Sep 1999 19:10:00 -0700

On Sun, 19 September 1999, William Stearns wrote:


      The 2.4.x kernel series, hopefully coming out in December, will
support iptables.  iptables has backwards compatibility modules for
running either ipfwadm or ipchains firewalls.  The native implementation
is extensible; anyone can create new loadable modules that provide either
new matching fields or new actions when a packet matches.  For example,
there's a module that allows matches on the source mac address.

I'd like to see:

1. Stateful packet filtering for non-MASQed stuff.
2. The ability to log somewhere other than /var/log/messages

But that's just me. Does the 2.4.x kernels have that functionality? Sounds like, if nothing else, it could be coded so 
it does.

-- PhoneBoy

--
Dameon D. Welch, a.k.a. PhoneBoy (dwelch () phoneboy com)
Check Point FireWall-1 FAQs at http://www.phoneboy.com/fw1/
The views expressed herein are not necessarily those of anyone else.
--
Signup for your free USWEST.mail Email account http://www.uswestmail.net



Current thread: