[rescue] IPFILTER woes

Brian Hechinger wonko at arkham.ws
Mon Feb 18 18:04:52 CST 2002


On Mon, Feb 18, 2002 at 06:44:57PM -0500, George Adkins wrote:
> Yeah, don't run your firewall on Slowlaris.
> run it on OpenBSD or NetBSD if you're good at tightening a Box up.

this was my first choice.  there is one serious flaw with this though.  there
is to this day, no SBus FDDI support in anything but Solaris.  so i have no
choice but to run Solaris on this machine.  and besides, Solaris is not that
terrible a thing.  really.

> OpenBSD supports transparent Bridging Firewalls.
> No IP, no TTL decrement, totally stealth, totally unassailable.

yeah, that's swank.

> (Of course, you have to actually know what you are doing, there's no GUI or 
> proxies or handholding.)

GUIs are for lusers. :)

-brian

-- 
"Oh, shut up Buddha."  -Jesus Christ (South Park)



More information about the rescue mailing list