Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 20 Dec 1999 12:45:29 -0800 (PST)
From:      Archie Cobbs <archie@whistle.com>
To:        darcy@ok-connect.com (Darcy Buskermolen)
Cc:        freebsd-ipfw@FreeBSD.ORG
Subject:   Re: ipfw as a statefull firewall
Message-ID:  <199912202045.MAA22866@bubba.whistle.com>
In-Reply-To: <3.0.32.19991213144606.00ac3590@mail.ok-connect.com> from Darcy Buskermolen at "Dec 13, 1999 02:46:06 pm"

next in thread | previous in thread | raw e-mail | index | archive | help
Darcy Buskermolen writes:
> I'm looking to use ipfw as a statefull firewall (much like checkpoint FW-1
> does) for use in a one to one NAT configuration. syn/ack filter is OK,
> however thes can of course be spoofed. From my understanding this
> functionality is available in ipfilter. Is it also available in ipfw ?

No, ipfw(8) is not stateful.

-Archie

___________________________________________________________________________
Archie Cobbs   *   Whistle Communications, Inc.  *   http://www.whistle.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ipfw" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199912202045.MAA22866>