
11-18-2006, 04:07 PM
|
|
Junior Guru Wannabe
|
|
Join Date: Jun 2005
Posts: 50
|
|
FreeBSD Firewall - APF, CSF
Hello,
I have a FreeBSD box, and I`m trying to install Firewall. I have tested APF and CSF, and in both cases installation has failed.
Have someone experience with those two firewall on BSD box, I like apf, looks easy-to-use (configure), but I got some errors like:
server# ./install.sh
Installing APF 0.9.6-1: cp: /etc/cron.daily/fw: No such file or directory
chmod: /etc/cron.daily/fw: No such file or directory
source: not found
[: unexpected operator
vnetgen.def not found, aborting.
|

11-18-2006, 04:21 PM
|
|
LORD OF THE RINGS
|
|
Join Date: Dec 2005
Location: Internet
Posts: 1,317
|
|
Why not using a beautiful firewall like IPFW? I dont think APF works well with FreeBSD.
|

11-18-2006, 04:24 PM
|
|
I like ice cream
|
|
Join Date: Mar 2003
Location: California USA
Posts: 11,590
|
|
APF doesnt work on freebsd due to the fact its iptables based.
|

11-18-2006, 04:28 PM
|
|
Junior Guru Wannabe
|
|
Join Date: Jun 2005
Posts: 50
|
|
Thank you for your reply linuxcares,
you wrote "beautiful" what is so far from words "suicidal, dangerous,..." which I have always met while reading articles about IPFW.
I don`t know, if it`s best solution on FreeBSD (looks like only one so far approved on BSD) I`ll try... If someone has some really good tutorail about IPFW can post here, tnx.
S.
|

11-18-2006, 07:59 PM
|
|
antitheistic atheist
|
|
Join Date: Oct 2005
Location: Fleet Street
Posts: 3,243
|
|
IPFW is terrific - I use FreeBSD on all my servers and have custom ipfw rules on every box.
|

11-18-2006, 08:03 PM
|
|
Community Liaison
|
|
Join Date: Aug 2003
Location: PA
Posts: 1,877
|
|
Yeah ipfw2 specifically gets my vote (anything 5.x on up default compiles ipfw2 vs the older ipfw, typically not a huge difference noticeable to the end user).
Not sure were suicidal or dangerous comes into play with ipfw2 (unless of course you forget to RTFM if you get stuck before just adding rules, in which case then same goes for anything iptables based as well...).
|

11-19-2006, 08:39 AM
|
|
Web Hosting Master
|
|
Join Date: Jun 2004
Posts: 789
|
|
FreeBSD as PF built in. PF is actually from the OpenBSD project, and in my opinion is far and away the best firewall around. Just google, there is plenty of info around. If you're already familiar with something like ipfw then I guess use it, but if you don't have a preference then PF is the way to go on fbsd.
|

11-19-2006, 09:48 AM
|
|
Hey, whats your uptime ?
|
|
Join Date: Mar 2004
Location: Tokyo / Japan
Posts: 489
|
|
have you tried "cerb" ?
Also I agree with pergesu that PF is not a bad choice at all.
|
| Thread Tools |
Search this Thread |
|
|
|
| Display Modes |
Linear Mode
|
| Postbit Selector |
|
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
|
|
| Login: |
|
|
| Advertisement: |
|
|
| Web Hosting News: |
|
|
|