iptables as a production firewall?

Feb 11, 2006 3 Replies

Does anyone use iptables as a front end firewall? I have a few web server with a high amount of traffic and don't want the complexity and the expense of high end firewall. How will iptables stack up against something like a Secure Computing Sidewinder or one of the other application layer firewalls? In my instance I only need to allow port



80 and 443 SYNs on the primary interface.

Thanks in advance.



IPTABLES is very robust in my opinion. It can do what you want it to do.

Thousands if not millions of people are doing this.

Netfilter (what you're calling iptables) is a well scaling well implemented filtering software, and compares with any other filtering system.

Yours, VB.

We do. And it's netfilter. iptables is just the configuration tool.

Not. netfilter does packet filtering, not application layer filtering, so you would compare apples to oranges.

cu

59cobalt

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required