From owner-freebsd-pf@FreeBSD.ORG Thu Sep 16 04:04:08 2004 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: by hub.freebsd.org (Postfix, from userid 674) id 881CD16A4CF; Thu, 16 Sep 2004 04:04:08 +0000 (GMT) Delivered-To: mlaier@vampire.homelinux.org Received: (qmail 36828 invoked by uid 1005); 25 May 2004 05:56:37 -0000 Delivered-To: max@vampire.homelinux.org Received: (qmail 36825 invoked from network); 25 May 2004 05:56:37 -0000 Received: from moutng.kundenserver.de (212.227.126.186) by pd9e39317.dip.t-dialin.net with SMTP; 25 May 2004 05:56:37 -0000 Received: from [212.227.126.146] (helo=mxng03.kundenserver.de) by moutng.kundenserver.de with esmtp (Exim 3.35 #1) id 1BSUvb-00045B-00 for max@vampire.homelinux.org; Tue, 25 May 2004 07:56:43 +0200 Received: from [206.53.239.180] (helo=turing.freelists.org) by mxng03.kundenserver.de with esmtp (Exim 3.35 #1) id 1BSUvb-0004AB-00 for max@love2party.net; Tue, 25 May 2004 07:56:43 +0200 Received: from localhost (localhost [127.0.0.1])ESMTP id 3E6DD72C226; Tue, 25 May 2004 00:39:47 -0500 (EST) Received: from turing.freelists.org ([127.0.0.1]) by localhost (turing [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 19111-07; Tue, 25 May 2004 00:39:47 -0500 (EST) Received: from turing (localhost [127.0.0.1])ESMTP id 6C16E72C249; Tue, 25 May 2004 00:39:46 -0500 (EST) Received: with ECARTIS (v1.0.0; list pf4freebsd); Tue, 25 May 2004 00:39:32 -0500 (EST) X-Original-To: pf4freebsd@freelists.org Delivered-To: pf4freebsd@freelists.org Received: from localhost (localhost [127.0.0.1])ESMTP id 2DEEF72C226 for ; Tue, 25 May 2004 00:39:32 -0500 (EST) Received: from turing.freelists.org ([127.0.0.1]) by localhost (turing [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 18313-50 for ; Tue, 25 May 2004 00:39:31 -0500 (EST) Received: from moutng.kundenserver.de (moutng.kundenserver.de [212.227.126.171])ESMTP id 99CFB72C222 for ; Tue, 25 May 2004 00:39:31 -0500 (EST) Received: from [212.227.126.206] (helo=mrelayng.kundenserver.de) by moutng.kundenserver.de with esmtp (Exim 3.35 #1) id 1BSUvG-0004QQ-00; Tue, 25 May 2004 07:56:22 +0200 Received: from [217.227.147.23] (helo=donor.laier.local) by mrelayng.kundenserver.de with asmtp (TLSv1:RC4-MD5:128) (Exim 3.35 #1) id 1BSUvG-00032k-00; Tue, 25 May 2004 07:56:22 +0200 From: Max Laier To: pf4freebsd@freelists.org User-Agent: KMail/1.6.1 References: <40B2DAD4.2040005@computeraddictions.com.au> In-Reply-To: <40B2DAD4.2040005@computeraddictions.com.au> MIME-Version: 1.0 Content-Type: multipart/signed; protocol="application/pgp-signature"; micalg=pgp-sha1; boundary="Boundary-02=_nAusAcwXlEdSxBy"; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Message-Id: <200405250756.55875.max@love2party.net> X-Provags-ID: kundenserver.de abuse@kundenserver.de auth:e28873fbe4dbe612ce62ab869898ff08 X-Virus-Scanned: by amavisd-new at freelists.org X-archive-position: 308 X-ecartis-version: Ecartis v1.0.0 Sender: pf4freebsd-bounce@freelists.org Errors-To: pf4freebsd-bounce@freelists.org X-original-sender: max@love2party.net Precedence: normal X-list: pf4freebsd X-Virus-Scanned: by amavisd-new at freelists.org X-Provags-Forward: max@love2party.net -> max@vampire.homelinux.org X-UID: 424 X-Length: 6492 X-Mailman-Approved-At: Thu, 16 Sep 2004 04:04:15 +0000 cc: Ryan Verner Subject: [pf4freebsd] Re: Maturity of this port? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.1 Reply-To: pf4freebsd@freelists.org List-Id: Technical discussion and general questions about packet filter (pf) List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Date: Thu, 16 Sep 2004 04:04:08 -0000 X-Original-Date: Tue, 25 May 2004 07:56:49 +0200 X-List-Received-Date: Thu, 16 Sep 2004 04:04:08 -0000 --Boundary-02=_nAusAcwXlEdSxBy Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline On Tuesday 25 May 2004 07:34, Ryan Verner wrote: > Honestly - how mature is this port? Is it recommended for production > use? How feature rich and stable is it compared to the OpenBSD offering > - any known bugs? Is this going to be actively maintained for the > forseeable future? Okay, I'll try to address these fairly general questions: 1) As you might have seen (I should really update the homepage) the port is= =20 now part of the FreeBSD source tree. 2) FreeBSD 5.x is -CURRENT and as such not recommend for production use=20 per-se. However, if you find FreeBSD-5.x reasonably stable in your=20 environment pf will not be the show-stopper. I use 5.x on all my boxes and = am=20 satisfied, even tracking -CURRENT (with a delay of a week or so) is good fo= r=20 most application I think. 3) FreeBSD-Current has the same feature-set as OpenBSD 3.4. Everything shou= ld=20 work as known from OpenBSD. ALTQ is not part of FreeBSD (yet). One major=20 problem with 3.4 however, is the lack of dynamic interface support. This=20 might cause problems with certain mpd setups (when tun0 is destroyed it mig= ht=20 trigger a panic when pf still has a reference to this interface). 4) An (experimental) import of OpenBSD 3.5 and ALTQ is available from:=20 http://people.freebsd.org/~mlaier/ I run it on two router, my laptop and my= =20 desktop/development machine without problems, but am still waiting for more= =20 feedback from other list-users. I can only encourage you to give it a spin,= I=20 am very confident that this will match your needs. 5) Daniel Hartmeier accepted a FreeBSD commit-bit to maintain the port on=20 =46reeBSD in addition to myself. We will try to stay in sync with OpenBSD=20 stable and will very likely import more reliability fixes from OpenBSD=20 current than OpenBSD MFC's to its stable branch (as the policy for MFC'ing = is=20 very strict over there). Summary: If you need ALTQ, we don't have a stable solution yet, but you are invited = to=20 test the patches (which are very close to stable already). If you do not ne= ed=20 ALTQ you can install FreeBSD-current and have OpenBSD 3.4-STABLE pf. =2D-=20 Best regards, | mlaier@freebsd.org Max Laier | ICQ #67774661 http://pf4freebsd.love2party.net/ | mlaier@EFnet --Boundary-02=_nAusAcwXlEdSxBy Content-Type: application/pgp-signature Content-Description: signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (FreeBSD) iD8DBQBAsuAnXyyEoT62BG0RAhrJAJ4oilW8KUFqB7LhPFH2u5YDKCxKAACeMEku Pi5yjYy8rCT0WHxfDgT/BTo= =wwoA -----END PGP SIGNATURE----- --Boundary-02=_nAusAcwXlEdSxBy--