[SunHELP] Filtering with Solaris 8 x86

Matthew Schumacher sunhelp at sunhelp.org
Thu Nov 30 13:16:54 CST 2000


Erik,

If you have another 486 or something I would run FreeBSD on it and use
ipfilter.  It is very stable on the bsd platform.  I prefer to run my
filtering on a dedicated hardened host anyway.

Just a suggestion,

schu

Erik Parker wrote:
> 
> Ok, Ipfilter doesn't cut it for me.. The box crashes every few weeks (with
> various versions).. kernel dumping because of Ip filter.
> 
> Is there any alternative? I basically only need to do very simple
> filtering, like blocking access to bind (aka one big ass root hole) to
> only be accessible to the polling upstream nameservers, and to ssh, so
> only allowed IP's can even hit the port.
> 
> Using the built in "filtering" of those softwares is not adequate..
> 
> Any ideas? Something inexpensive is proffered.. I could run checkpoint on
> it, but this is just a host, not a firewall.
> 
> Erik Parker
> Mind Security
> 
> An armed society, is a polite society.
> 
> _______________________________________________
> SunHELP maillist  -  SunHELP at sunhelp.org
> http://www.sunhelp.org/mailman/listinfo/sunhelp



More information about the SunHELP mailing list