Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 21 Jul 2014 11:14:03 +0200
From:      Eduardo Morras <emorrasg@yahoo.es>
To:        freebsd-questions@freebsd.org
Subject:   Re: Future of pf / firewall in FreeBSD ? - does it have one ?
Message-ID:  <20140721111403.1ed4838e38e9b79f3843d9de@yahoo.es>
In-Reply-To: <CAAdA2WPdEmcQ-0m14-r0hMUXuYu3joTA6TeAGwtdXhSL%2BRknwg@mail.gmail.com>
References:  <53C706C9.6090506@com.jkkn.dk> <20140718110645.GN87212@FreeBSD.org> <20140718151255.b3e677d9.gerrit.kuehn@aei.mpg.de> <CALfReycHtSi5GXgFZihrTsgDG6wc-ZfkYmQu7AjQmOKdeXntrA@mail.gmail.com> <CAEeRwNV3bJrM5KrGObZtNvSY1mVMW9jz2M4t2m2SSq_vvWmZ5w@mail.gmail.com> <CALfReyfWJd7YOi_Y8Mq=Q-xndLueF7vU5xwc1w_YGyM1a9DQZA@mail.gmail.com> <53CA2D39.6000204@sasktel.net> <CALfReyfkZY1ZDNohP6npRVQfjBK2M6j59R8idUGazr1yJDX3Jg@mail.gmail.com> <20140720123916.GV96250@e-new.0x20.net> <CAJcQMWe9=3PvOhfT8N-78N04A0u3OvkjOd-HPCiBUcJFZZb0-g@mail.gmail.com> <20140720134133.1d30f725@kan> <20140720201251.3bdd2226.freebsd@edvax.de> <CAAdA2WPdEmcQ-0m14-r0hMUXuYu3joTA6TeAGwtdXhSL%2BRknwg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, 20 Jul 2014 21:35:25 +0300
Odhiambo Washington <odhiambo@gmail.com> wrote:

> So to summarize (probably):
> 
> Someone needs to decide whether or not they want FreeBSD or OpenBSD
> when it comes to PF.
> It's a simple decision to make:)
> You draw a two-column table with FreeBSD and OpenBSD on each one, do
> your analysis and decide where to pledge your allegiance.

... Not FreeBSD and OpenBSD discussion, but pf on FreeBSD and pf on OpenBSD, and note that I don't use the word 'versus'/'vs.'

> 
> Debate CLOSED!

No think so. I can think some ideas not discussed in this thread, 

a) One of the best parts of OpenBSD pf is the configure syntax. Could it be implemented in ipfw? Different apps with same config language.

b) I'm not a kernel, pf or ipfw developer, but in user space, threading is not the only way to get smp, you can use fork or multiple processes, see f.ex. PostgreSQL, or varnish with its varnishd, adm, log.. different specialiced bins for same app.

I know (because I discovered it in the thread) there are other conflict points as network stack, vm between OpenBSD and FreeBSD, but perhaps we can dodge the problem using other way.

---   ---
Eduardo Morras <emorrasg@yahoo.es>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20140721111403.1ed4838e38e9b79f3843d9de>