I've used OpenBSD for firewalls in the past, mostly because of the early IPsec support. They are basically bulletproof. Haven't used CARP though.
On 1/11/06, John Hebert <metanoid at gmail.com> wrote: > > http://os.newsforge.com/article.pl?sid=06/01/02/1643229&from=rss > > "One presentation that stood out from the crowd was on "Building Robust > Firewalls with OpenBSD and PF <http://www.openbsd.org/faq/pf/>," by Ryan > McBride. McBride talked about how to use CARP between two OpenBSD PF > firewalls <http://www.countersiege.com/doc/pfsync-carp/>. To show that no > traffic was dropped when one of the firewalls was rebooted, he played a song > from a PC outside of the firewall. After rebooting and pulling cables to > show the redundancy, McBride took the demonstration one step further. He > asked someone from the audience to select a numbers of cables. He then took > an axe from under the table and started to hack the selected cables -- > giving the word "hacking" a whole new meaning. The song didn't miss a single > beat, and the 200+ audience members applauded loudly." > _______________________________________________ > General mailing list > General at brlug.net > http://brlug.net/mailman/listinfo/general_brlug.net > > > -------------- next part -------------- An HTML attachment was scrubbed... URL: http://brlug.net/pipermail/general_brlug.net/attachments/20060112/07520313/attachment.htm
