Re: Linux or OpenBSD

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Kevin Chadwick
Date: Thursday, September 23, 2010 - 4:10 am

On Wed, 22 Sep 2010 15:47:02 -0400
Brad Tilley <brad@16systems.com> wrote:

And PF will filter more packets on slower, quieter hardware, whilst
using less electricity. SMP is not needed for a pure firewall because
your nic should be the bottleneck b4 the cpu.

It also wipes your ass by optimising the ruleset which will be smaller
 and so fater to start with anyway and fixing up windows non random
 network port usage, preventing hijacks. It's also much quicker to use
 and more intuitive. Do you trust something that mangles your packets?,
 only joking.

iptables has many options and you may find something in there you like
but a lot of it borders on useless and so you'll spend less time
getting what you want done. PF does a lot of cool stuff that you may
not even realise is happening, like hiding the number of machines due
to timestamp randomisation. You can always use both but I'd always put
in PF first. Plus the host running PF is far more secure. I replaced
ipcop with OpenBSD. It's a no brainer, as google will tell you.

F.Y.I.
I believe PF still? performs better on i386 than it does on amd64.
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Linux or OpenBSD, Rikky Taylor, (Wed Sep 22, 12:29 pm)
Re: Linux or OpenBSD, Brad Tilley, (Wed Sep 22, 12:47 pm)
Re: Linux or OpenBSD, Kevin Wilcox, (Wed Sep 22, 1:00 pm)
Re: Linux or OpenBSD, roberth, (Wed Sep 22, 1:22 pm)
Re: Linux or OpenBSD, Fabio Almeida, (Wed Sep 22, 2:11 pm)
Re: Linux or OpenBSD, Luis F Urrea, (Wed Sep 22, 2:56 pm)
Re: Linux or OpenBSD, Nenhum_de_Nos, (Wed Sep 22, 4:39 pm)
Re: Linux or OpenBSD, Jussi Peltola, (Wed Sep 22, 6:16 pm)
Re: Linux or OpenBSD, Chris Dukes, (Wed Sep 22, 6:48 pm)
Re: Linux or OpenBSD, R0me0 ***, (Wed Sep 22, 7:58 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Thu Sep 23, 4:10 am)
Re: Linux or OpenBSD, Peter N. M. Hansteen, (Thu Sep 23, 9:22 am)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 11:32 am)
Re: Linux or OpenBSD, R0me0 ***, (Fri Sep 24, 12:51 pm)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 4:04 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 12:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 1:54 pm)
Re: Linux or OpenBSD, Brad Tilley, (Sun Sep 26, 3:10 pm)
Re: Linux or OpenBSD, Ross Cameron, (Sun Sep 26, 11:30 pm)
Re: Linux or OpenBSD, Jan Stary, (Mon Sep 27, 1:09 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 6:10 am)
Re: Linux or OpenBSD, Brad Tilley, (Mon Sep 27, 6:31 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 7:33 am)
Re: Linux or OpenBSD, Joachim Schipper, (Mon Sep 27, 7:45 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 8:00 am)
Re: Linux or OpenBSD, - Tethys, (Mon Sep 27, 8:24 am)
Re: Linux or OpenBSD, Marco Peereboom, (Mon Sep 27, 8:26 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Mon Sep 27, 11:13 am)
Re: Linux or OpenBSD, Toni Mueller, (Sat Oct 23, 6:48 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Sat Oct 23, 7:20 am)
Re: Linux or OpenBSD, Marco Peereboom, (Sat Oct 23, 8:36 am)
Re: Linux or OpenBSD, Jean-Francois, (Sat Oct 23, 12:33 pm)
Re: Linux or OpenBSD, Sean Kamath, (Sat Oct 23, 1:44 pm)
Re: Linux or OpenBSD, Siju George, (Sat Oct 23, 7:50 pm)
Way OT:Re: Linux or OpenBSD, Eric Furman, (Sun Oct 24, 12:18 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:50 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:52 am)
Re: Linux or OpenBSD, andres, (Tue Nov 23, 8:55 am)
Re: Linux or OpenBSD, Alexander Schrijver, (Tue Nov 23, 9:45 am)
Re: Linux or OpenBSD, daniel holtzman, (Tue Nov 23, 12:09 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:36 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:50 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Tue Nov 23, 2:13 pm)
Re: Linux or OpenBSD, ropers, (Wed Nov 24, 1:30 pm)
Re: Linux or OpenBSD, Toni Mueller, (Wed Nov 24, 2:59 pm)