[nycbug-talk] ipfw, ipf, pf comparison matrix

Trish Lynch trish at bsdunix.net
Sun Sep 10 19:25:18 EDT 2006


On Sat, 9 Sep 2006, Dru wrote:

>
> Okay, so I'm into firewalls and incomplete charts bug me...
>
> Here's a start at a table that only compares ipfw and pf. Functionality
> has been alphabetized. Comparisons were interesting as similar
> functionality was described using different terminology in the
> documentation for the two firewalls.
>
> I haven't had a need to make firewall rules that included the IP fields
> with ipfw keywords (man ipfw) and would appreciate anyone confirming if pf
> also allows you to refer to those fields and how to do so.
>
> I'd also like feedback on further functionality that should be added to
> the chart and a reference proving that a missing * is indeed possible in
> that firewall.
>
> Have fun :-)
>
> Dru
>

What do you mean by "Flush", as ipfw has 'ipfw flush', if it means to 
flush rulesets 'in place'.

-Trish




-- 
Trish Lynch					   trish at bsdunix.net
Key fingerprint = 781D 2B47 AA4B FC88 B919  0CD6 26B2 1D62 6FC1 FF16



More information about the talk mailing list