ZZ Wave <zzw...@gmail.com> writes: > For example, in FreeBSD there is "slow" pf in userspace and "fast" > kernel-level netgraph.
Wow, I can scarcely imagine a single sentence that reveals more thoroughly and conclusively how little familiarity you have with any of the systems you mention. Hint: both pf and netgraph are 'kernel-level', with some userland tools attached to make the admin's life easier. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ "Remember to set the evil bit on all malicious network traffic" delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.