Re: IPChains vs Cisco IOS Packer Filters
IOS does packet filtering, it's not stateful in any way. You won't be losing anything by using ipchains. Depending on the system you run ipchains on and the router you use, you could get better performance with ipchains on a fast pentium for less money, and it sounds like you'd have more control over it.
As for support, there's a lot of information about ipchains out there, just ask and you shall recieve.
On Thu, Apr 12, 2001 at 09:52:19AM +0200, Eugene van Zyl wrote:
> Can anyone tell me whether the Packet Filter on the Cisco IOS does statefull packet inspection ? and whether I'll be losing by replacing it with IPChains on Kernel 2.2.17?
> Biggest reason being I know nothing about the Cisco IOS and it's also a leased router to which I don't have telnet or console access (only the ISP's net is allowed access to) and I keep on needing to alter rules and it's a bugger having to wait for the ISP to respond to requests :-(
> PS. What resources are availble on the net on configuring and running a Linux IPChains firewall ? (other that the HOWTO of course :-) )
> Eugene van Zyl