iptables as a production firewall?

Does anyone use iptables as a front end firewall? I have a few web server with a high amount of traffic and don't want the complexity and the expense of high end firewall. How will iptables stack up against something like a Secure Computing Sidewinder or one of the other application layer firewalls? In my instance I only need to allow port

80 and 443 SYNs on the primary interface.

Thanks in advance.

Reply to
Adisegna
Loading thread data ...

IPTABLES is very robust in my opinion. It can do what you want it to do.

Reply to
Robert

Thousands if not millions of people are doing this.

Netfilter (what you're calling iptables) is a well scaling well implemented filtering software, and compares with any other filtering system.

Yours, VB.

Reply to
Volker Birk

We do. And it's netfilter. iptables is just the configuration tool.

Not. netfilter does packet filtering, not application layer filtering, so you would compare apples to oranges.

cu

59cobalt
Reply to
Ansgar -59cobalt- Wiechers

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.