Jacques:

        Good idea. Let me offer some candid ones about echowall:

Pro:
---
1. Installs and deinstalls into ES without conflicting with
   ES's builtin scripts.
2. Has built-in support for 30 services which need specific
   port-forward and IPfwd settings.
3. Supports the above services for LAN machines's which 
   have DHCP-assigned addresses. Ie, specifying a server is
   based on MAC-ID.
4. Automatically re-inits on DHCP lease renewal or PPPoE renewal.
5. Works out of the box with RFC-1918 external IP addresses.
6. Deny's without logging most of the background-radiation
   log fillers (like NetBIOS broadcasts, IGMP's, etc.)

Cons:
----
1. No DMZ support.
2. Requires gatping subnet-scanning utility (~10kB).
3. No easy hooks for customization like builtin scripts.
4. No dancing mice.

        Hope that helps...

-Scott

On Wed, 20 Jun 2001, Jacques Nilo wrote:

> It looks like the list of available firewalls for LRP is growing. My
> understanding (correct me if I am wrong) is that we have, on the top of
> the "standard" LRP script, 3 main firewall LRP packages available
> echowall 1.2
> rcf 5.2
> seattle 4.1
> I think it would be really useful if we could come up with a list of
> pros and cons for each package, some kind of benchmarking.
> What do  you think ?
> Jacques
> 
> 
> _______________________________________________
> Leaf-devel mailing list
> [EMAIL PROTECTED]
> http://lists.sourceforge.net/lists/listinfo/leaf-devel
> 


_______________________________________________
Leaf-devel mailing list
[EMAIL PROTECTED]
http://lists.sourceforge.net/lists/listinfo/leaf-devel

Reply via email to