> -----Original Message-----
> From: Brooks Carlson [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, June 05, 2001 3:02 PM
> To: 'Firewalls (E-mail)
> Subject: Lost in Linux IP Acronym Land
> 
> 
> I have been learning as much as possible about Linux and 
> networking.  There
> is a huge amount of 
> information available, and I have done extensive searches of 
> www.google.com,
> Linux HOWTOs, and
> several textbooks.  I do have a couple of questions which I 
> can't seem to
> find a direct answer to:
> 
>      What is the distinction between IPCHAINS

built in packet filtering code for Linux 2.2 kernel.

>, IPTables, 

packet filtering code for Linux 2.4 kernel

> IP-Masquerade,

IP masquerading (many-to-one NAT) for linux 2.2

> IPFWADM

utility to manage packetfiltering for pre-ipchains

> and NETFILTER?

same as iptables

>      Am I correct in saying that the evolution of the Linux 
> firewall was:
>      IPFWADM  ---> IPCHAINS  ---> IPTables?  

Yup?

      
>      Where does IP-Masquerade fit into this mix?  Under 
> IPCHAINS I have
> rules that I can MASQ 
>      packets leaving my internet network.  Is this the same 
> thing, or is
> IP-Masquerade a separate
>      program?

IP Masquerading is code used with ipchains to allow masquerading; it
is obseleted by the packet mangling in iptables/netfilter

> 
>      What about netfilter?  

see above.
 
> Sorry about the stupid question, I really have tried to find 
> the answer, but
> I want to understand this 
> clearly before moving on.  A strong foundation means a more 
> secure network.
> I have been up until
> now a Checkpoint Firewall-1 user on NT, but would like to 
> switch all to
> Linux eventually.

http://netfilter.samba.org/

Your source for netfilter/iptables stuff.

Henry
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to