I believe the BSD ipfilter *is* stateful. At 08:42 AM 3/27/2002 +0100, The Pal / Patrik Bodin wrote: >On 2002-03-27 10:30, Peter Trifonov revealed: > >PT> Hello everybody! >PT> >PT> I consider replacement of Cisco PIX 515 (Restricted) firewall in a small >PT> corporate network with *BSD software firewall. Can anybody tell me how >PT> close can one approximate PIX's functionality with BSD? > >You can't make it do the _same_ stateful inspection as the PIX does, and you >can't make it achieve the same prestanda without using a more powerful >machine, >but apart from that you can make it do everything the PIX can. In addition you >can make it do the ocean of things that UNIX:es can do, but I would let it >do as >little as possible outside firewalling and related. > >/P > >_______________________________________________ >Firewalls mailing list >[EMAIL PROTECTED] >http://lists.gnac.net/mailman/listinfo/firewalls
_______________________________________________ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls
