Using ipfw table names instead of numbers.

Doug Barton dougb at FreeBSD.org
Mon Sep 6 06:59:42 UTC 2010


On 09/05/2010 11:47 PM, Adrian Chadd wrote:
> I'd argue that "DNS" clue pushes the firewall out from a packet
> inspection thing and into a user-space application inspection thing.

It also opens up an attack vector on your firewall.


Doug

-- 

	Improve the effectiveness of your Internet presence with
	a domain name makeover!    http://SupersetSolutions.com/

	Computers are useless. They can only give you answers.
			-- Pablo Picasso



More information about the freebsd-current mailing list