Re: FreeBSD - Secure by DEFAULT ?? [hosts.allow]

From: Zvezdan Petkovic (zvezdan_at_CS.WM.EDU)
Date: 08/08/03

  • Next message: Kevin Glick: "IPSec delays"
    Date: Thu, 7 Aug 2003 18:22:55 -0400
    To: freebsd-security@freebsd.org
    
    

    On Thu, Aug 07, 2003 at 01:59:27PM -0700, Chris Odell wrote:
    >
    > But why IPFW? IPF is *BSD native wall. I actually use both - IPF for
    > firewalling, and IPFW for throttling via dummy net. My recommended
    > reading for IPF and IPFW is "Building Linux and OpenBSD Firewalls"...

    Where did you get this information?

    Native firewall for FreeBSD is ipfw, AFAIK. It's even used on OS X as a
    native firewall, due to Darwin's FreeBSD roots.

    Also, OpenBSD stopped using ipf four releases ago. The native firewall
    for OpenBSD is pf. pf inherited much of the syntax from ipf, but also
    extended it and added some features.

    That said, I personally find ipf quite a good stateful firewall and its
    syntax can feel more natural than ipfw syntax. It also works on Solaris
    and other OS's besides *BSDs.

    -- 
    Zvezdan Petkovic <zvezdan@cs.wm.edu>
    http://www.cs.wm.edu/~zvezdan/
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
    

  • Next message: Kevin Glick: "IPSec delays"

    Relevant Pages


    Loading