Converting from IPFW to IPFILTER

Mark Cullen mark.r.cullen at gmail.com
Fri Oct 7 02:58:20 PDT 2005


Charles Swiger wrote:
> On Oct 6, 2005, at 5:44 PM, Brian E. Conklin wrote:
> 
>>     I am getting ready to switch a FreeBSD 4.11 machine from IPFW to
>> IPFILTER for better FTP and NAT support.
> 
> 
> Hmm.  Is there something natd doesn't handle for your case...?
> 
>>     I currently have IPFW compiled into the kernel.
>>     Do I need to recompile a kernel without IPFW before I can  enable 
>> IPF?
>>     Can I just set IPFW to allow everything by default?
>>     Thanks in advance for your advice.
> 

You can have IPFW and IPF active at the same time, yes.

> 
> If you're going to switch to using IPF, you might want to consider  
> upgrading or reinstalling the OS  to 5.4 instead of 4.11.
> 

Are there any particular reasons why you suggest switching from 4.11 to 
5.4 if going from IPFW to IPF? Because I have just converted from IPFW2 
to IPF on 4.11-STABLE...

I did notice that IPF appears to be a rather old version. 3.something, 
where the latest version of IPF is 4.something. Is this the reason?


More information about the freebsd-questions mailing list