Solved a *bsd users favourite firewall solution?

hoobastank69

Member

Reaction score: 2
Messages: 28

Freebsd comes with several built in firewall solutions, I am wondering which one is your favourite and why.

Care to enlighten me?
 
Last edited:

Lamia

Aspiring Daemon

Reaction score: 212
Messages: 772

drhowarddrfine

Son of Beastie

Reaction score: 2,344
Messages: 4,310

Lamia I would always look at any reference to something on reddit with a jaundiced eye and tend to violently vomit after viewing such things. Never, EVER trust anything from reddit.
 

rigoletto@

Daemon
Developer

Reaction score: 1,251
Messages: 2,291

In short, IPFilter is old and it still is in Base just because Juniper needs it and it seems pretty hard to move a firewall to ports[1]. PF has a more pleasant syntax (debatable), more user frienly. IPFW is the FreeBSD native firewall, the fastest (but just relevant for large installations with huge traffic) but the syntax is terrible (debatable).

[EDIT]

IPFW is also quite scriptable!

[1] but IIRC there is someone working on it.
 

Lamia

Aspiring Daemon

Reaction score: 212
Messages: 772

Lamia I would always look at any reference to something on reddit with a jaundiced eye and tend to violently vomit after viewing such things. Never, EVER trust anything from reddit.
drhowarddrfine Thank you for that. That would be one in twenty references for an industry-focused Inquisition. One must check other valuable and reputable sources. Most of such outlets now contain water-down information. HN is becoming more like it.
 
Top