Re: Firewalls


Subject: Re: Firewalls
From: Robert Vogt IV (robert@arborhost.com)
Date: Tue Aug 07 2001 - 18:30:08 MDT


        Paul,

> > Any 'plug+play' box such as these has a fixed amount of capabilities, in
> > terms of route tables, etc.
>
> So does a piece of software, such as the IP chains software.

                BUT - you can recompile it, removing most of these
limitations. My point is that Linux can handle most any corporate
network, while a small 'box' can't.

> You can buy a bigger Cisco router.

                Bigger != better.

> Then you buy another one from somebody else... like duh.
>
> You seem to be suffering fo the delusion that any solution has
> to be bulletproof for all time otherwise it's not a reasonable
> solution. Why you have this delusion isn't clear.

                You really seem to like wasting money. ;)

> Again: for 99% of home/hobby users, an off-the-shelf hub/router
> box is a perfectly reasonable solution.

                That wasn't the point. Linux users are typically highly
educated computer gurus who don't like the 'simplest' solution...

> Now that's a headache since YDL doesn't even run on a IIci since
> it has a 68030 (not PowerPC) processor.

                Did I say it did? I believe I mentioned NetBSD - but
Linux does run on 68k series processors - MkLinux and uClinux...

> If you want crappy Ethernet cards, sure. Better ones cost
> more.

                An Ethernet card is an Ethernet card. I'm talking
standard 802.3 compliant cards w/ 2 M hours MTBF.

> Many of us don't have the time or really care.

                Then why are you using Linux?

                        Sincerely,

                        Robert Vogt IV



This archive was generated by hypermail 2a24 : Tue Aug 07 2001 - 17:38:57 MDT