OpenBSD 3.2 Readies For Release, pf Matures
An anonymous reader writes "Just over a year ago, OpenBSD creator Theo de Raadt ripped ipfilter out of the OpenBSD code leaving "the world's most secure OS" temporarily without a packet filter. Here's an interesting interview with Daniel Hartmeier, author of pf, the stateful packet filter developed as a replacement. Now just over a year old, it sounds like pf has already become a serious contendor in the world of stateful packet filtering. This interview is of particular relevance with OpenBSD 3.2 to be released on Friday, 11/1."
Use FreeBSD instead. Or if its old and shitty and single processor, use NetBSD. OpenBSD is fucking hype. The only good thing about it is SSH. Its performance sucks and its the only non SMP BSD left.
Theo, you are a jerk, and no one likes working with you. The NetBSD guys were assholes to kick you out, but whine all you want about that, OpenBSD sucks. Sorry. I tried several times to give OpenBSD a chance. Sorry, pal, "secure" is a relative term even for you mist priv sep zealot (nice job hackin in privsep and causing a root exploit) and trojaned tarballs.
Good job, Rat. We dont care aboutn OpenBSD. FreeBSD or die.
I'd hardly call pf mature. Hell, its only been in the CVS for less than a month. I commend OpenBSD as much as the next guy, but if Theo isn't careful he is going to end up with another root exploit in the default install.
"The lesson to be learned is not to take the comments on slashdot too literally." --Vinnie Falco, BearShare
Which you realize, is more secure. OSX is similar in this respect. sshd, ftpd, all the services.. off by default. even sharing.. until you enable it.
If you start randomly turning on services on obsd w/o knowing what you are doing, who's fault is it for being insecure after the install?
-
ping -f 255.255.255.255 # if only