Multiple Firewalls with ipfilter?

Giorgos Keramidas keramida at ceid.upatras.gr
Thu Mar 27 08:21:52 PST 2003


On 2003-03-27 15:55, Markus Boelter <markus at mitternachtsstun.de> wrote:
>On Thu, Mar 27, 2003 at 12:39:45PM +0200, Giorgos Keramidas wrote:
>> Hmmm, you could probably do some ingenious stuff with ipfs and a
>> shared disk partition, where the 'active' firewall save its state
>> periodically.  When this falls over, the code that handles the switch
>> to the 'backup' machine could reload the state from the shared disk :)
>
> Hm - and if the disk fails, you don't have redundancy :))

Erm, it quickly gets ugly, but you can always save state in a disk
that is local to any of the two machines, i.e. one that is shared over
the network from some other place where you can guarantee redundancy
using other means.

Anyway, I'm not a high-availability expert, so I should shuttup now :)



More information about the freebsd-security mailing list