On Fri, Oct 19, 2007 at 03:15:03PM +0100, Richard Wilson wrote:
[snip the details]
> That's about it really. If I can get it to work, I can persuade the boss
If in the end, you do have to use iptables (either because you couldn't
get PF to do it the way the boss wants or because the boss ends up
_wanting_ iptables), you may want to look at shorewall. It builds
iptables firewalls using syntax that is remarkably similar to PF; in
that I'm new to OpenBSD but come from Debian and could never get my head
around iptables. I used shorewall in Debian and found that based on
that, the PF manual both made sense and the concepts were similar.
Doug.
| Benjamin Herrenschmidt | Re: [PATCH] Remove process freezer from suspend to RAM pathway |
| Daniel Walker | Re: [Announce] [patch] Modular Scheduler Core and Completely Fair Scheduler [CFS] |
| Greg KH | [GIT PATCH] driver core patches against 2.6.24 |
| Andrew Morton | -mm merge plans for 2.6.23 |
git: | |
| David Miller | [GIT]: Networking |
| Hannes Eder | [PATCH 01/43] drivers/net/at1700.c: fix sparse warning: symbol shadows an earlier ... |
| Gerrit Renker | [PATCH 16/37] dccp: API to query the current TX/RX CCID |
| Herbert Xu | Re: [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
