[MLUG] [ot] Looking for high performance open source firewall

Jean-Francois Theroux jf at theroux.ca
Wed Dec 17 10:55:16 EST 2008


Personally, I'd rather throw a bit more hardware at it and have a
heavily-audited secure code running on firewalls. I would never use OpenBSD
on web servers ;)

On Wed, Dec 17, 2008 at 10:52 AM, David Filion <david at filiontech.com> wrote:

> Nicholas Accad wrote:
> > I don't think you will find anything in Linux for that, all Linux
> > firewalls are based on IPTables.
> > Why not use FreeBSD?
> >
> >
>
> One of the BSDs is certainly a top running option (I didn't mean to make
> them sound excluded).  Older performance tests (mmap, socket open/close,
> etc) I've found on Google show FreeBSD having a performance advantage
> over OpenBSD  but I haven't found any recent results.   I've been
> playing with both in VMs (and I'm still getting used to the BSD way of
> life.
>
> Both m0n0wall and pfSense (both BSD based) support a bridged mode which
> is what I'm looking for.   I just prefer doing setups like this by hand
> so I get a better understanding of what is happening under the hood.
> Especially handy when the s**t hits the fan and you need to make
> adjustments fast.  But sometimes getting things up and running fast is
> more important.
>
> Thanks to everyone for their suggestions, feel free to keep'm coming.
>
> David
>
> _______________________________________________
> mlug mailing list
> mlug at listserv.mlug.ca
> https://listes.koumbit.net/cgi-bin/mailman/listinfo/mlug-listserv.mlug.ca
>



-- 
Jean-François Théroux
Linux/network security consultant
http://www.theroux.ca
-------------- next part --------------
An HTML attachment was scrubbed...
URL: /pipermail/mlug-listserv.mlug.ca/attachments/20081217/a886492a/attachment.htm 


More information about the mlug mailing list