> -----Original Message-----
> From: Brooks Carlson [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, June 05, 2001 3:02 PM
> To: 'Firewalls (E-mail)
> Subject: Lost in Linux IP Acronym Land
>
>
> I have been learning as much as possible about Linux and
> networking. There
> is a huge amount of
> information available, and I have done extensive searches of
> www.google.com,
> Linux HOWTOs, and
> several textbooks. I do have a couple of questions which I
> can't seem to
> find a direct answer to:
>
> What is the distinction between IPCHAINS
built in packet filtering code for Linux 2.2 kernel.
>, IPTables,
packet filtering code for Linux 2.4 kernel
> IP-Masquerade,
IP masquerading (many-to-one NAT) for linux 2.2
> IPFWADM
utility to manage packetfiltering for pre-ipchains
> and NETFILTER?
same as iptables
> Am I correct in saying that the evolution of the Linux
> firewall was:
> IPFWADM ---> IPCHAINS ---> IPTables?
Yup?
> Where does IP-Masquerade fit into this mix? Under
> IPCHAINS I have
> rules that I can MASQ
> packets leaving my internet network. Is this the same
> thing, or is
> IP-Masquerade a separate
> program?
IP Masquerading is code used with ipchains to allow masquerading; it
is obseleted by the packet mangling in iptables/netfilter
>
> What about netfilter?
see above.
> Sorry about the stupid question, I really have tried to find
> the answer, but
> I want to understand this
> clearly before moving on. A strong foundation means a more
> secure network.
> I have been up until
> now a Checkpoint Firewall-1 user on NT, but would like to
> switch all to
> Linux eventually.
http://netfilter.samba.org/
Your source for netfilter/iptables stuff.
Henry
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]