Re: Linux or OpenBSD

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Peter N. M. Hansteen
Date: Thursday, September 23, 2010 - 9:22 am

Chris Dukes <pakrat@pr.neotoma.org> writes:


Certainly both the first and for the second one, there's an angle that
iptables users tend to forget or gloss over: With iptables you
actually risk running into weird side effects since your rule set load
is a shell script that loads rules incrementally and you can never
really be sure what's what unless the first action in your loading
script is to flush all existing rules, which of course runs a risk of
both killing connections and leaving your network wide open until your
block rules are in place.


Yes, it's one of the better summaries by a Linux person, actually a
quite sane one.  But note the date, a lot has happened on the PF side
of the fence since then, not least performance-wise.

- P
-- 
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Linux or OpenBSD, Rikky Taylor, (Wed Sep 22, 12:29 pm)
Re: Linux or OpenBSD, Brad Tilley, (Wed Sep 22, 12:47 pm)
Re: Linux or OpenBSD, Kevin Wilcox, (Wed Sep 22, 1:00 pm)
Re: Linux or OpenBSD, roberth, (Wed Sep 22, 1:22 pm)
Re: Linux or OpenBSD, Fabio Almeida, (Wed Sep 22, 2:11 pm)
Re: Linux or OpenBSD, Luis F Urrea, (Wed Sep 22, 2:56 pm)
Re: Linux or OpenBSD, Nenhum_de_Nos, (Wed Sep 22, 4:39 pm)
Re: Linux or OpenBSD, Jussi Peltola, (Wed Sep 22, 6:16 pm)
Re: Linux or OpenBSD, Chris Dukes, (Wed Sep 22, 6:48 pm)
Re: Linux or OpenBSD, R0me0 ***, (Wed Sep 22, 7:58 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Thu Sep 23, 4:10 am)
Re: Linux or OpenBSD, Peter N. M. Hansteen, (Thu Sep 23, 9:22 am)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 11:32 am)
Re: Linux or OpenBSD, R0me0 ***, (Fri Sep 24, 12:51 pm)
Re: Linux or OpenBSD, Ross Cameron, (Fri Sep 24, 4:04 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 12:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Sun Sep 26, 1:54 pm)
Re: Linux or OpenBSD, Brad Tilley, (Sun Sep 26, 3:10 pm)
Re: Linux or OpenBSD, Ross Cameron, (Sun Sep 26, 11:30 pm)
Re: Linux or OpenBSD, Jan Stary, (Mon Sep 27, 1:09 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 6:10 am)
Re: Linux or OpenBSD, Brad Tilley, (Mon Sep 27, 6:31 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 7:33 am)
Re: Linux or OpenBSD, Joachim Schipper, (Mon Sep 27, 7:45 am)
Re: Linux or OpenBSD, Martin Schröder, (Mon Sep 27, 8:00 am)
Re: Linux or OpenBSD, - Tethys, (Mon Sep 27, 8:24 am)
Re: Linux or OpenBSD, Marco Peereboom, (Mon Sep 27, 8:26 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Mon Sep 27, 11:13 am)
Re: Linux or OpenBSD, Toni Mueller, (Sat Oct 23, 6:48 am)
Re: Linux or OpenBSD, Kevin Chadwick, (Sat Oct 23, 7:20 am)
Re: Linux or OpenBSD, Marco Peereboom, (Sat Oct 23, 8:36 am)
Re: Linux or OpenBSD, Jean-Francois, (Sat Oct 23, 12:33 pm)
Re: Linux or OpenBSD, Sean Kamath, (Sat Oct 23, 1:44 pm)
Re: Linux or OpenBSD, Siju George, (Sat Oct 23, 7:50 pm)
Way OT:Re: Linux or OpenBSD, Eric Furman, (Sun Oct 24, 12:18 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:50 am)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 5:52 am)
Re: Linux or OpenBSD, andres, (Tue Nov 23, 8:55 am)
Re: Linux or OpenBSD, Alexander Schrijver, (Tue Nov 23, 9:45 am)
Re: Linux or OpenBSD, daniel holtzman, (Tue Nov 23, 12:09 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:36 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:50 pm)
Re: Linux or OpenBSD, Toni Mueller, (Tue Nov 23, 1:53 pm)
Re: Linux or OpenBSD, Kevin Chadwick, (Tue Nov 23, 2:13 pm)
Re: Linux or OpenBSD, ropers, (Wed Nov 24, 1:30 pm)
Re: Linux or OpenBSD, Toni Mueller, (Wed Nov 24, 2:59 pm)