Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 20 Jan 2001 14:58:44 +0200
From:      Tim Priebe <tim@polytechnic.edu.na>
To:        Sean Lutner <sean@rentul.net>
Cc:        freebsd-security@freebsd.org
Subject:   Re: Failover firewalls with ipfw?
Message-ID:  <3A698B84.8BF22034@polytechnic.edu.na>
References:  <Pine.BSF.4.31.0101191426030.89288-100000@lowrider.lewman.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Sean Lutner wrote:
> 
> I'm currently doing some research into firewalls, and which one(s) would
> be right for my network. I'm considering everything from Checkpoint-1, to
> Cisco Pix, to ipchains, to ipfw on FreeBSD. My question is this. Does
> anyone out there know of any utilities/code/addons I could use to
> implement a failover pair of firewalls using ipfw and fbsd? Ideally I'd
> like to do stateful failover, but having two machines always on and a
> heartbeat solution might wirk as well. If anyone can offer some pointers,
> it would be much appreciated.

My approch to this problem is to use a pair of FreeBSD boxes running
ipfw as firewalls, and dynamic routing to handle the fail over. I am
running stateless rules, as I have not had time to look into writing the
code to get them to exchange state information. 

Tim.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3A698B84.8BF22034>