Re: The book of pf...

2011-01-19 Thread Kevin Wilcox
On 19 January 2011 02:28, Christer Solskogen
christer.solsko...@gmail.com wrote:

 On Tue, Jan 18, 2011 at 7:35 PM, Kevin Wilcox kevin.wil...@gmail.com wrote:

 1) Definitely get the first version

 Oh, why?

Because Peter made mention on misc@ that the second edition was geared
towards OpenBSD 4.8 and the version of pf that's in FreeBSD is quite a
bit older.

http://marc.info/?l=openbsd-miscm=128938065524891w=2

kmw
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-19 Thread matteo filippetto

 Because Peter made mention on misc@ that the second edition was geared
 towards OpenBSD 4.8 and the version of pf that's in FreeBSD is quite a
 bit older.

 http://marc.info/?l=openbsd-miscm=128938065524891w=2

Hi

In the second edition there are also reference and syntax of previous
version of pf (  4.8 ).

Best regards
-- 
Matteo Filippetto
http://op83.blogspot.com
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-19 Thread Peter N. M. Hansteen
Modulok modu...@gmail.com writes:

 This book comes in two editions. The first was published in December
 2007, the second, November, 2010. Does anyone have this? And if so
 would I be correct to get the first edition instead? I know FreeBSD's
 pf lags being openBSD's, so I'm not sure which version of the book to
 get, if either are applicable to the version of pf that FreeBSD runs?
 (FreeBSD 8.1)

I started updating the text for the 2nd edition due to the changes
introduced in OpenBSD 4.7, (aka Henning's monster diff) plus a few
other goodies such as pflow(4) that had turned up since the first
edition's late 2007 release, but I took some care to keep samples in
the older syntax where it's relevant.

That means that for the FreeBSD parts, the second edition is up to
date per roughly early October 2010 (FreeBSD 8.1-stable), with a not
that for FreeBSD, we assume the 8 series.  If you're running an older
release (ie a close descendant of whatever was -stable in late 2007),
the first edition is likely better suited.  

For other differences between the two, you could probably get an idea
by comparing the TOCs from the two editions' web pages (at
http://nostarch.com/pf.htm and http://nostarch.com/pf2.htm
respectively).  The second edition turned into a more thorough rewrite
than I'd originally planned with some bits moving around. But if in
doubt, why not get both? ;)

But yes, for FreeBSD 8.1, you'll be happier with the second edition.
FreeBSD's PF syntax is old-style, but some other relevant network
config details changed between 2007 and 2010, and the second edition
reflects this.

- Peter

-- 
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
Remember to set the evil bit on all malicious network traffic
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-19 Thread Modulok
On 1/19/11, Peter N. M. Hansteen pe...@bsdly.net wrote:
 Modulok modu...@gmail.com writes:

 This book comes in two editions. The first was published in December
 2007, the second, November, 2010. Does anyone have this? And if so
 would I be correct to get the first edition instead? I know FreeBSD's
 pf lags being openBSD's, so I'm not sure which version of the book to
 get, if either are applicable to the version of pf that FreeBSD runs?
 (FreeBSD 8.1)

 I started updating the text for the 2nd edition due to the changes
 introduced in OpenBSD 4.7, (aka Henning's monster diff) plus a few
 other goodies such as pflow(4) that had turned up since the first
 edition's late 2007 release, but I took some care to keep samples in
 the older syntax where it's relevant.

 That means that for the FreeBSD parts, the second edition is up to
 date per roughly early October 2010 (FreeBSD 8.1-stable), with a not
 that for FreeBSD, we assume the 8 series.  If you're running an older
 release (ie a close descendant of whatever was -stable in late 2007),
 the first edition is likely better suited.

 For other differences between the two, you could probably get an idea
 by comparing the TOCs from the two editions' web pages (at
 http://nostarch.com/pf.htm and http://nostarch.com/pf2.htm
 respectively).  The second edition turned into a more thorough rewrite
 than I'd originally planned with some bits moving around. But if in
 doubt, why not get both? ;)

 But yes, for FreeBSD 8.1, you'll be happier with the second edition.
 FreeBSD's PF syntax is old-style, but some other relevant network
 config details changed between 2007 and 2010, and the second edition
 reflects this.

Peter,

Thanks for taking the time to reply! Your post answers a lot of
questions that I and others had. I have since purchased the second
edition of the book and am working my way through it. Thanks for
writing a book on the subject too. Without books such as yours, it
would be a far more frustrating world.

For anyone else tinkering with firewalls: virtual machines can
simplify the logistics.
-Modulok-
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-18 Thread Adam Vande More
On Mon, Jan 17, 2011 at 10:37 PM, Modulok modu...@gmail.com wrote:

 List,

 The Book of PF: A No-Nonsense Guide to the OpenBSD Firewall

 This book comes in two editions. The first was published in December
 2007, the second, November, 2010. Does anyone have this? And if so
 would I be correct to get the first edition instead? I know FreeBSD's
 pf lags being openBSD's, so I'm not sure which version of the book to
 get, if either are applicable to the version of pf that FreeBSD runs?
 (FreeBSD 8.1)


I don't follow OpenBSD, but my understanding is there has been significant
change between FreeBSD's version of PF and the current version in OpenBSD.
According to the freebsd-pf@ list(which is maybe a better place for your
question) PF version 4.5 is scheduled to appear in FreeBSD 9 so we'll still
be well behind.  I would guess the previous version of the book has syntax
and examples closer to what you'll be using if FreeBSD is your host although
2nd editions often have a lot of useful additions and corrections.

-- 
Adam Vande More
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-18 Thread Christer Solskogen
On Tue, Jan 18, 2011 at 9:25 AM, Adam Vande More amvandem...@gmail.com wrote:
 On Mon, Jan 17, 2011 at 10:37 PM, Modulok modu...@gmail.com wrote:

 List,

 The Book of PF: A No-Nonsense Guide to the OpenBSD Firewall

 This book comes in two editions. The first was published in December
 2007, the second, November, 2010. Does anyone have this? And if so
 would I be correct to get the first edition instead? I know FreeBSD's
 pf lags being openBSD's, so I'm not sure which version of the book to
 get, if either are applicable to the version of pf that FreeBSD runs?
 (FreeBSD 8.1)


 I don't follow OpenBSD, but my understanding is there has been significant
 change between FreeBSD's version of PF and the current version in OpenBSD.
 According to the freebsd-pf@ list(which is maybe a better place for your
 question) PF version 4.5 is scheduled to appear in FreeBSD 9 so we'll still
 be well behind.  I would guess the previous version of the book has syntax
 and examples closer to what you'll be using if FreeBSD is your host although
 2nd editions often have a lot of useful additions and corrections.


No. The second edition also includes the syntax for FreeBSD 8.x.(It
also includes the old sytnax for OpenBSD as well as the new syntax)

-- 
chs,
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-18 Thread Modulok
 No. The second edition also includes the syntax for FreeBSD 8.x.(It
 also includes the old sytnax for OpenBSD as well as the new syntax)

 --
 chs,

Thank you! That's what I needed to know.

-Modulok-
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-18 Thread Kevin Wilcox
On 17 January 2011 23:37, Modulok modu...@gmail.com wrote:

 Or perhaps someone could suggest something else? I read the examples
 and basic handbook for pf, but wanted a bit more. I'm going to be
 tacking a firewall project coming up and need to be well prepared.
 Suggested readings appreciated.

1) Definitely get the first version

2) Definitely pick up the book. While the OpenBSD FAQ is *extremely*
useful, you don't always have access. This is the single best pf
reference I've seen.

kmw
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


Re: The book of pf...

2011-01-18 Thread Christer Solskogen
On Tue, Jan 18, 2011 at 7:35 PM, Kevin Wilcox kevin.wil...@gmail.com wrote:
 1) Definitely get the first version


Oh, why?


-- 
chs,
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org


The book of pf...

2011-01-17 Thread Modulok
List,

The Book of PF: A No-Nonsense Guide to the OpenBSD Firewall

This book comes in two editions. The first was published in December
2007, the second, November, 2010. Does anyone have this? And if so
would I be correct to get the first edition instead? I know FreeBSD's
pf lags being openBSD's, so I'm not sure which version of the book to
get, if either are applicable to the version of pf that FreeBSD runs?
(FreeBSD 8.1)

Or perhaps someone could suggest something else? I read the examples
and basic handbook for pf, but wanted a bit more. I'm going to be
tacking a firewall project coming up and need to be well prepared.
Suggested readings appreciated.

Thanks!
-Modulok-
___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to freebsd-questions-unsubscr...@freebsd.org