Netfilter vs. IP Filter? IP Filter on Linux 2.4.x?

Julian Plamann jp at osnw.org
Tue Nov 27 22:20:31 PST 2001


Hello,

I'm looking into setting up some simple firewall rules on my Linux box. 
However, from what I've seen so far, BSD/Solaris' IP Filter seems to 
have a nicer feel to it as far as configuration, etc.


I'm aware that Linux 2.4.x replaces ipchains with "Netfilter" at the 
kernel level. I don't know much about Netfilter itself.

What I'd like to know are any experiences you've all had. How is 
Netfilter compared to IPfilter? Is the basic configuration similar in 
any ways? Also, I've heard that Netfilter is Linux's "version" of 
IPfilter. Is this true?

Any chance of IPfilter being ported to Linux? ;-)
Or, can anyone recommend any other ways to go?

Just doing this for fun, by the way. The firewall doesn't need to be 
insanely scalable.

Cheers,
Julian Plamann
(jp at osnw.org)





More information about the talk mailing list