I've been running linux routers using iproute2 and iptables for a while now, and openBSD just had a new release which has me considering switching my home setup to a BSD pf solution. Does anyone have any experience comparing the two? I guess I'm also concerned about other software I use on my linux router not being supported in openBSD (OpenVPN, OpenSwan, and Quagga primarily).
Hi! I agree that pf is easier. My first copy of FreeBSD was won from Defcon 6, answering a question correctly from the crowd, and I proceeded to learn about the wonders that are BSD for a command line (and Xterm) systems administrator.
|
|
PROBLEM: | OpenBSD PF Remote Denial Of Service Vulnerability Exploiting this issue allows remote attackers to cause a kernel panic on affected computers, denying further service to legitimate users. |
PLATFORM: | OpenBSD 4.3, 4.4, and 4.5 are affected. |
ABSTRACT: | OpenBSDs PF firewall in OpenBSD 4.3 up to OpenBSD-current is prone to a remote Denial of Service during a null pointer dereference in relation with special crafted IP datagrams. If the firewall handles such a packet the kernel panics. The vulnerability resides in 'sys/net/pf.c' in the pf_test() function. |
---------------------------------------------------
PLUG-discuss mailing list - PLUG-discuss@lists.plug.phoenix.az.us
To subscribe, unsubscribe, or to change your mail settings:
http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss
--------------------------------------------------- PLUG-discuss mailing list - PLUG-discuss@lists.plug.phoenix.az.us To subscribe, unsubscribe, or to change your mail settings: http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss