In article <[EMAIL PROTECTED]>,
Thomas Stromberg <[EMAIL PROTECTED]> wrote:
> For why I feel ipfilter is better then ipfw (this post was written back
> in December '98, ipfw may have changed greatly since):
>
>
>http://www.freebsd.org/cgi/getmsg.cgi?fetch=117538+122112+/usr/local/www/db/text/1998/freebsd-current/19981227.freebsd-current
>
> (the big 'wanton atticizing discussion')
>
> A summary of it being:
>
> - Multiplatform. Runs on IRIX, Solaris, Linux. Comes shipped with
> FreeBSD, OpenBSD, and NetBSD. Keeps us in sync with the other BSD's.
> - Better logging then ipfw (has ipfw improved? Thats why I switched to
> ipfilter in the first place)
And:
- IP filter does NAT completely inside the kernel
- IP filter has stateful filtering
I'd like to see it come back. But that means it has to be brought
up to date first.
John
--
John Polstra [EMAIL PROTECTED]
John D. Polstra & Co., Inc. Seattle, Washington USA
"No matter how cynical I get, I just can't keep up." -- Nora Ephron
To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-current" in the body of the message