From owner-freebsd-ipfw@FreeBSD.ORG Wed Nov 19 02:50:45 2003 Return-Path: Delivered-To: freebsd-ipfw@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id DB51E16A4CF for ; Wed, 19 Nov 2003 02:50:45 -0800 (PST) Received: from mobil-4.internett.de (mobil-4.internett.de [195.30.143.204]) by mx1.FreeBSD.org (Postfix) with ESMTP id AF56243FDD for ; Wed, 19 Nov 2003 02:50:44 -0800 (PST) (envelope-from michael@mobil-4.internett.de) Received: from mobil-4.internett.de (localhost.internett.de [127.0.0.1]) hAJAncZZ014607; Wed, 19 Nov 2003 11:49:38 +0100 (CET) (envelope-from michael@mobil-4.internett.de) Received: (from michael@localhost) by mobil-4.internett.de (8.12.9p2/8.12.9/Submit) id hAJAnaDM014606; Wed, 19 Nov 2003 11:49:36 +0100 (CET) (envelope-from michael) Date: Wed, 19 Nov 2003 11:49:36 +0100 From: michael To: Vahric MUHTARYAN , freebsd-ipfw@freebsd.org Message-ID: <20031119104936.GB14007@mobil-4.internett.de> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.4.1i Subject: Re: Which Firewall --> ipfw or iptable or ipsec X-BeenThere: freebsd-ipfw@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: IPFW Technical Discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 19 Nov 2003 10:50:46 -0000 Hello, i don't know about the other Answers, but here ist mine. I use ipfw fully and only, it's a little bit newer the ipfilter and very good and easy to understand. Ok, if you have using iptables before, then you get a little bit confused, may if you have understand the knowledge-bases, then you will find it easy. If you have Problems with ipfw you can conect me, then i would you getting help to create a simple and good firewall-start-script. I have 3 or 4 firewall-scripts for serval circumstances: a)DSL-subscriber with userland ppp and opening ports to connect from outside b)very simple but fuly functionally 1 rule-firewall for clients c)Firewall for an internet-bastion and nat on external-interface includes ip-accounting based on ipa d) Firewall with traffic-shaping/queueing and QOS weight-based Contact me if you are interested. Best regards Michael