PF Bridging-Firewall vs Routing-Firewall

Hello everyone,

What are the advantages and disadvantages of bridging-firewall and routing-firewall? Is there any other irreplaceable advantage of the bridging-firewall, regardless of factors such as whether to change the existing IP and the invisibility is not easy to be attacked?

In other words, is there a need for a bridging-firewall for a newly designed network or data center? Or a bridging-firewall should be avoided in a completely new design network.

Thanks.
 
Don't use bridging firewalls with pf. It will break as soon as you get fragmented packets.

It may work with ipfw (it at least has a saner design), but I'm not familiar enough with ipfw to say for sure.
 
Back
Top