Great Circle Associates Firewalls
(January 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: packet filter on stock OSes (was: what firewall platform?)
From: maass @ odb . rhein-main . de (Joerg Maass)
Date: Tue, 17 Jan 1995 01:23:36 +0100
To: wallynet @ panix . com (Walter F. Netman)
Cc: firewalls @ GreatCircle . COM

Hi Walter,

>Where is stock OSes?
>

I don´t understand your question, I´m afraid... If you wanted to ask for
implementations, both Ultrix and OSF/1 have a so-called screend, which is a
sophisticated packet filter (add a little marketing sugar here :-). You can
configure them into the kernel and then edit a plain english configuration
file. Check out the documentation or send me a mail
(Joerg .
 Maass @
 frs .
 mts .
 dec .
 com) if you need more help.

 >>>  Uh, the interface a packet arrived on is available from the mbuf
>>>header in 44bsd systems. I've used this fairly easily to build a
>>>fairly minimumal packet filter so that "virtual private networking"
>>>(encrypting and sending to a branch office) works, and isn't spoofed
>>>by packets arriving from the "public" interface.
>>>  This is possible in 43BSD/SunOS too, thanks to a little kludge.
>>>
>>
>>Possible on Ultrix and OSF/1 from Digital Equipment, too.
>>


--
Am Tiergarten 22            Tel.: +49/69/4990880
D-60316 Frankfurt           Fax : +49/6103/383-157

Germany                     privat: maass @
 thinkfish .
 rhein-main .
 de
                            biz.:   Joerg .
 Maass @
 frs .
 mts .
 dec .
 com

PGP signature available upon request.



Indexed By Date Previous: Re: This is what I suspected
From: somewhere!sjg @ zen . void . oz . au
Next: Switching ports
From: bobk @ manzanita . DEV . 3Com . COM (Bob Konigsberg)
Indexed By Thread Previous: unsubsribe
From: Matthew Bostwick <mbostwic @ chs . claremont . edu>
Next: Switching ports
From: bobk @ manzanita . DEV . 3Com . COM (Bob Konigsberg)

Google
 
Search Internet Search www.greatcircle.com