Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 1 Aug 2014 18:43:25 +0800
From:      "=?gb18030?B?MjgwMjcxNzg0Mg==?=" <2802717842@qq.com>
To:        "=?gb18030?B?a3JhZHVr?=" <kraduk@gmail.com>, "=?gb18030?B?Z2xlYml1cw==?=" <glebius@freebsd.org>
Cc:        =?gb18030?B?ZnJlZWJzZC1jdXJyZW50?= <freebsd-current@freebsd.org>, =?gb18030?B?ZnJlZWJzZC1xdWVzdGlvbnM=?= <freebsd-questions@freebsd.org>
Subject:   Re: Future of pf / firewall in FreeBSD ? - does it have one ?
Message-ID:  <tencent_28C1EEB02B664CA45377D271@qq.com>
References:  <53C706C9.6090506@com.jkkn.dk> <6326AB9D-C19A-434B-9681-380486C037E2@lastsummer.de> <53CB4736.90809@bluerosetech.com> <201407200939020335.0017641F@smtp.24cl.home> <788274E2-7D66-45D9-89F6-81E8C2615D14@lastsummer.de> <201407201230590265.00B479C4@smtp.24cl.home> <20140729103512.GC89995@FreeBSD.org> <53DA304E.6020105@herveybayaustralia.com.au> <20140731134147.GH2402@glebius.int.ru> <CALfReyerXQm6ehhtKXcJ9XD5fr=0LBShtD8EAUjd9p07xcQvjw@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

来信收到,谢谢! 
---原始邮件---
From:"krad"<kraduk@gmail.com>;
Date:2014年8月1日(星期五) 下午3:39
To:"Gleb Smirnoff"<glebius@freebsd.org>;
Cc:"freebsd-current"<freebsd-current@freebsd.org>;"FreeBSD Questions"<freebsd-questions@freebsd.org>;
Subject:Re: Future of pf / firewall in FreeBSD ? - does it have one ?

I always found natting in ipfw rather awkward and harder than in pf.
Looking at the man page it doesnt seem to have changed. I should probably
give it another go though as it has been about 10 years now


On 31 July 2014 14:41, Gleb Smirnoff <glebius@freebsd.org> wrote:

> On Thu, Jul 31, 2014 at 10:02:22PM +1000, Da Rock wrote:
> D> Without diminishing your efforts so far, what do you think about
> D> pitching all efforts into IPFW to combine effort and reduce overhead of
> D> maintaining separate firewalls in the core? Is there an advantage to
> D> having our own pf?
>
> Is there any disadvantage keeping it? It is a plugin. It is optional
> and loadable. I removed most additions to the network stack that live
> outside netpfil/pf.
>
> Some people like it and use it.
>
> It is also the only tool to configure ALTQ now.
>
> --
> Totus tuus, Glebius.
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "
> freebsd-questions-unsubscribe@freebsd.org"
>
_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?tencent_28C1EEB02B664CA45377D271>