Switching Firewalls from ipf to pf on FreeBSD

Christopher writes:

It’s time to deploy a new FreeBSD firewall, and I thought I’d check out pf instead of my standard ipf package.

pf is written by the OpenBSD team, and was designed to replace ipf because of the licensing issues with that code not being a proper BSD license. There’s also some political issues, but I’ll leave those along.

The Background:

Since the early days my office firewalls have been FreeBSD platforms. I’ve always loved the BSD platform, back from the days where I built an ISP around the BSDi package in the early 90′s.

For as long as I can remember, I’ve been using ipf (ipfilter) by Darren Reed. It became so standard that FreeBSD started including it in their releases which makes life much easier.

…. continues

Read the whole article  (christopher-technicalmusings.blogspot.com – 03/03/2009)

Thank you, Edmondas, for sharing.

 

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>