On Mon, Jan 22, 2001 at 11:15:53PM -0500, Michael H. Warfield wrote:
> SPF provides some stateful inspection for IPChains, but I would
> really recommend upgrading to Netfilter for full connection tracking and
> stateful inspection.
Please don't confuse a stateful packet filter with "stateful inspection".
The later is more than keeping track of connection state accross ip packets,
it also looks inside the packets to do content based ACLs.
Greetings
Bernd
--
(OO) -- [EMAIL PROTECTED] --
( .. ) ecki@{inka.de,linux.de,debian.org} http://home.pages.de/~eckes/
o--o *plush* 2048/93600EFD eckes@irc +497257930613 BE5-RIPE
(O____O) When cryptography is outlawed, bayl bhgynjf jvyy unir cevinpl!
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]