I've used OpenBSD for firewalls in the past, mostly because of the early
IPsec support.  They are basically bulletproof.  Haven't used CARP though.

On 1/11/06, John Hebert <metanoid at gmail.com> wrote:
>
> http://os.newsforge.com/article.pl?sid=06/01/02/1643229&from=rss
>
> "One presentation that stood out from the crowd was on "Building Robust
> Firewalls with OpenBSD and PF <http://www.openbsd.org/faq/pf/>," by Ryan
> McBride. McBride talked about how to use CARP between two OpenBSD PF
> firewalls <http://www.countersiege.com/doc/pfsync-carp/>. To show that no
> traffic was dropped when one of the firewalls was rebooted, he played a song
> from a PC outside of the firewall. After rebooting and pulling cables to
> show the redundancy, McBride took the demonstration one step further. He
> asked someone from the audience to select a numbers of cables. He then took
> an axe from under the table and started to hack the selected cables --
> giving the word "hacking" a whole new meaning. The song didn't miss a single
> beat, and the 200+ audience members applauded loudly."
> _______________________________________________
> General mailing list
> General at brlug.net
> http://brlug.net/mailman/listinfo/general_brlug.net
>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: 
http://brlug.net/pipermail/general_brlug.net/attachments/20060112/07520313/attachment.htm

Reply via email to