[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Create a canned "Firewall Build" or RFHH



On 21 Feb 2002 at 15:16, Luke Bakken wrote:

> By their very nature firewalls should not be plug and play.  If you
> can't figure out what every line of your pf rules do, you shouldn't be
> setting up a firewall, period.  You'll invariably feel safe with
> something that probably isn't.

We're talking degrees of safe here, as the only completely 
safe system is one that is unplugged and turned off.  IMHO 
having an easy-to-set-up OpenBSD firewall would be light-years 
better than having to use an easy-to-set-up "firewall" like 
WinRoute or Smoothwall or Freesco.

I think we should agree to disagree.  Some folks here think 
OpenBSD should only be used by those willing to take the time 
to become gurus, while others want to use computers to do 
other things than learn about computers ...

---------------------------------------------------------
Angus Scott-Fleming              GeoApps, Tucson, Arizona
angussf@geoapps.com   1-520-290-5038 / fax 1-208-248-3124
---------------------------------------------------------

  "Those who would give up essential Liberty, to purchase a 
   little temporary safety, deserve neither Liberty nor 
safety." 
       - Benjamin Franklin