Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 14 Apr 1999 08:41:36 +0200
From:      Thomas Uhrfelt <thomas.uhrfelt@plymovent.se>
To:        "'freebsd-security@freebsd.org'" <freebsd-security@freebsd.org>
Subject:   Re: IPFilter?
Message-ID:  <01BE8653.67C58CC0.thomas.uhrfelt@plymovent.se>

next in thread | raw e-mail | index | archive | help

I already bought the 'Building Internet Firewalls' and its a good book, and 
I got the theoretic side of building a firewall pretty much nailed down. 
What I am missing is FreeBSD specific things + IPFilter/NAT things. I am 
new to the FreeBSD community and can't find any good documentation covering 
these. Neither is the IPFilter package filled with any "good" newcomer 
docs. I really think IPFilter and IPNat should be covered in the handbook 
since its a kernel option nowdays.

Do you have any links for good FreeBSD+IPFilter pages?

Regards,

Thomas Uhrfelt

[cut ]

Thomas,

1. I recommend buying some books and reading some web pages by gurus (not
by some of the vendors!).  OReilly's have some good books.  try Building
Inernet Firewalls by Chapman and Zwicky, or a book by Bellovin and
Cheswick (I don't recall the published just now).

2. Yes, don't go for any OS with a history of continuing weaknesses.  And
perferrably add in some defence in depth, by using choking routers
externally and internally.

Good luck (but really there is no luck - just use a good scientific
approach).

Cheers, Gary

[ end cut ]



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?01BE8653.67C58CC0.thomas.uhrfelt>