Re: My first install - good performance, firewall questions

From: Dang Huynh (danghuynh_at_usa.com)
Date: 01/18/04


Date: Sun, 18 Jan 2004 05:24:09 GMT

There are two firewall, ipf and ipfw, embedded in the FreeBSD. Check out ipf
website at http://coombs.anu.edu.au/~avalon/ip-filter.html and ipfw for man
page. Find the right one you like most and use it.

"Gregory Toomey" <nospam@bigpond.com> wrote in message
news:bud2r3$g2s9h$1@ID-202028.news.uni-berlin.de...
> Well, I'm very impressed with my first FreeBSD install. I managed to get X
> (nvidia driver), KDE, ppp all working without much problems.
>
> THe performance is amazing, far faster than linux. There seem to be a lot
> fewer processes. This would make a great distro for web server, or even
an
> old laptop.
>
> Is there firewall builder like http://firehol.sourceforge.net/ which is a
> frontend for the underlying commands. I'm after a stateful firewall,
> routing and simple syntax.
>
> gtoomey



Relevant Pages

  • Re: FreeBSD - Secure by DEFAULT ?? [hosts.allow]
    ... They both exist as part of the base FreeBSD ... both ipf and ipfw are "native" to FreeBSD. ... > native firewall, ...
    (FreeBSD-Security)
  • Re: natd: failed to write packet back (Permission denied)
    ... > last month I installed a working firewall using FreeBSD 4.4, ... I hope there isn't a mistake in the ipfw rules.. ... > Presse Programm Service Berlin - Systems administration ...
    (FreeBSD-Security)
  • RE: FreeBSD - Secure by DEFAULT ?? [hosts.allow]
    ... But why IPFW? ... IPF is *BSD native wall. ... > hosts.allow file on a FreeBSD Production Server? ... but with no Firewall yet. ...
    (FreeBSD-Security)
  • Re: The way forward
    ... > Pf seems to scale better than netfilter/iptables, ipfw, or ipf. ... > basically "Why would we need another packet filter?" ... FreeBSD randomizes ISNs, ...
    (FreeBSD-Security)
  • Re: ipfw,ipf
    ... but what is the difference between ipfw and ipf ... > Seting up your firewall is easy to do... ... You can protect just one host, or an entire network. ...
    (comp.unix.bsd.freebsd.misc)