Great Circle Associates Firewalls
(October 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: IP Filter 3.2 - Release
From: Darren Reed <avalon @ coombs . anu . edu . au>
Date: Sat, 1 Nov 1997 15:00:56 +1100 (EDT)
To: Firewalls @ GreatCircle . COM (Firewalls Mailing List)

IP Filter 3.2 - Release

Finally, IP Filter 3.2 has reached a point where it can be turned loose
upon the world with some degree of safety.  New to version 3.2 are the
following:

        * ported to IRIX 5,3 & 6.2 - it has been successfully compiled into
          the kernel for both of these, but only tested on 6.2 (uniprocessor).
          It should also work on 6.3, but not 6.4 or above.

        * Solaris 2 support extended to 2.3 - 2.6, inclusive.

        * patches for OpenBSD 2.1 integration.

        * limited in-kernel FTP proxy, for use with or without NAT.

        * Rule groups introduced, allowing rules to be structure in a
          heirarchical manner, rather than a single elongated list.

        * `dynamic NAT' available, where an interface name is given, and a
          0 IP address, and the current interface address is used for all
          NAT rules.

        * rules can instruct the filter to skip other rules, if there's a
          match.

        * packet authentication by user programs supported.

        * pre-authentication table for setting up temporary permission
          for packets to go through.

        * matching on host/network targets can be inverted, allowing a
          negative match rather than just positive.
        
        * tunable variables available via sysctl on FreeBSD-2.2.
        
        * logging of table entries setup & removed for NAT and state
          to separate log devices, to allow for better accounting of 
          network usage.

        * 64 bit counters used for accounting (where available).
          
        * ipsend v2.1 included.

        * many other minor changes and bug fixes (including documentation :)
          ...

The somewhat primitive looking web pages can be found at:

http://coombs.anu.edu.au/ipfilter

and the package can be ftp'd from:

ftp://coombs.anu.edu.au/pub/net/ip-filter/ip_fil3.2.tar.gz

Darren
p.s. FYI, BSD/OS 3 will be supported in 3.2.1.

Indexed By Date Previous: Re: Unlimited Users Firewalls
From: "Mark 'segfault' Guzman" <root @ lsd . pbx . org>
Next: Re: Unlimited Users Firewalls
From: "Mark 'segfault' Guzman" <root @ lsd . pbx . org>
Indexed By Thread Previous: Altavista SMTPin bungling?
From: Oliver Tonge <oliver @ superonline . net>
Next:
From: (nil)

Google
 
Search Internet Search www.greatcircle.com