Re: Linux or OpenBSD

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Sean Kamath
Date: Saturday, October 23, 2010 - 1:44 pm

On Oct 23, 2010, at 12:33 PM, Jean-Francois wrote:

helping
good
pages

I agree with all of that.

Who cares how fast your firewall is if it's compromised?  This is not to say
PF/OpenBSD is slow, but my point is who wants a Ferrari that blows up
unexpectedly when you can have a perfectly reasonable car that never blows
up?

Security has many facets, but the two I deem most important are: How safe is
something from external control and how likely am I to fuck it up allowing
someone to take advantage of my system?  I can't do much about the former,
except to trust people who are smarter than me and have more experience than
I, and the latter I can only select that which I believe I won't fuck up.

The difference between PF maintenance and IPTables maintenance, in my
experience, is significant.  PF can seem a little harder at first, because it
requires a little bit of thought (at least that's how I felt grokking the new
PF match rules.  In the beginning of my PF experience, it was trivial to move
from ipf to pf.).  But once you get it, it's a richer toolset of options.
IPTables is just a freakin' huge, long blithering list of chained crap.  It
drives me nuts messing with consumer firewalls that run IPTables.  Writing PF
rules is like telling someone "go to the store and get milk", and you might
have to explain that once.  Writing IPTables rules is like telling someone
"stand up".  Then "Walk to door".  Then "Open door".  Keep going until you get
to "put milk in fridge".  Oh, you might need to explain how to walk, too.

Sean
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Linux or OpenBSD, Rikky Taylor, (Wed Sep 22, 12:29 pm)
Re: Linux or OpenBSD, Brad Tilley, (Wed Sep 22, 12:47 pm)
Re: Linux or OpenBSD, Kevin Wilcox, (Wed Sep 22, 1:00 pm)
Re: Linux or OpenBSD, roberth, (Wed Sep 22, 1:22 pm)
Re: Linux or OpenBSD, Fabio Almeida, (Wed Sep 22, 2:11 pm)
Re: Linux or OpenBSD, Luis F Urrea, (Wed Sep 22, 2:56 pm)
Re: Linux or OpenBSD, Nenhum_de_Nos, (Wed Sep 22, 4:39 pm)
Re: Linux or OpenBSD, Jussi Peltola, (Wed Sep 22, 6:16 pm)
Re: Linux or OpenBSD, Chris Dukes, (Wed Sep 22, 6:48 pm)
Re: Linux or OpenBSD, R0me0 ***, (Wed Sep 22, 7:58 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Thu Sep 23, 4:10 am)
Re: Linux or OpenBSD, Peter N. M. Hansteen, (Thu Sep 23, 9:22 am)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 11:32 am)
Re: Linux or OpenBSD, R0me0 ***, (Fri Sep 24, 12:51 pm)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 4:04 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 12:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 1:54 pm)
Re: Linux or OpenBSD, Brad Tilley, (Sun Sep 26, 3:10 pm)
Re: Linux or OpenBSD, Ross Cameron, (Sun Sep 26, 11:30 pm)
Re: Linux or OpenBSD, Jan Stary, (Mon Sep 27, 1:09 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 6:10 am)
Re: Linux or OpenBSD, Brad Tilley, (Mon Sep 27, 6:31 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 7:33 am)
Re: Linux or OpenBSD, Joachim Schipper, (Mon Sep 27, 7:45 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 8:00 am)
Re: Linux or OpenBSD, - Tethys, (Mon Sep 27, 8:24 am)
Re: Linux or OpenBSD, Marco Peereboom, (Mon Sep 27, 8:26 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Mon Sep 27, 11:13 am)
Re: Linux or OpenBSD, Toni Mueller, (Sat Oct 23, 6:48 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Sat Oct 23, 7:20 am)
Re: Linux or OpenBSD, Marco Peereboom, (Sat Oct 23, 8:36 am)
Re: Linux or OpenBSD, Jean-Francois, (Sat Oct 23, 12:33 pm)
Re: Linux or OpenBSD, Sean Kamath, (Sat Oct 23, 1:44 pm)
Re: Linux or OpenBSD, Siju George, (Sat Oct 23, 7:50 pm)
Way OT:Re: Linux or OpenBSD, Eric Furman, (Sun Oct 24, 12:18 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:50 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:52 am)
Re: Linux or OpenBSD, andres, (Tue Nov 23, 8:55 am)
Re: Linux or OpenBSD, Alexander Schrijver, (Tue Nov 23, 9:45 am)
Re: Linux or OpenBSD, daniel holtzman, (Tue Nov 23, 12:09 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:36 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:50 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Tue Nov 23, 2:13 pm)
Re: Linux or OpenBSD, ropers, (Wed Nov 24, 1:30 pm)
Re: Linux or OpenBSD, Toni Mueller, (Wed Nov 24, 2:59 pm)