PF Today
At this point, we have covered a bit of background. Some years have passed since 2001, and the PF code has been through a number of revisions. Some of these revisions have introduced major new features, while others have been introduced maybe to stabilize or optimize PF. PF in its present OpenBSD 4.2 form is a mature and stable packet filter that is capable of doing quite a few things, if you want it to.
PF classifies packets based on address family, protocol, source or destination port or port ranges, packet type, and source or destination address. It will even classify packets relative to specific interfaces or interface groups and, with a reasonable degree of certainty, based on the source operating system and a number of other parameters. ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access