logoalt Hacker News

electric_mayhemyesterday at 6:55 PM1 replyview on HN

PF is really nice. (Source: me. Cissp and a couple decades of professional experience with open source and proprietary firewalls).

And if they are already using it on openbsd, it’s almost certainly an easier lift to move from one BSD PF implementation to another versus migrating everything to Linux and iptables.


Replies

theideaofcoffeeyesterday at 6:57 PM

Agreed. Once you've gone pf you'll pine for it when working with anything else.

show 2 replies