- Uses Netfilter's connection tracking facilities for stateful packet
filtering.
- Can be used in a wide range of router/firewall/gateway applications.
- Completely customizable using configuration files.
- No limit on the number of network interfaces.
- Allows you to partitions the network into zones and gives you complete
control over the connections permitted between each pair of zones.
- Multiple interfaces per zone and multiple zones per interface
permitted.
- Supports nested and overlapping zones.
- QuickStart Guides (HOWTOs)
to help get your first firewall up and running quickly
- A GUI is available via Webmin 1.060 and later (http://www.webmin.com)
- Extensive documentation
included in the .tgz and .rpm downloads.
- Flexible address management/routing support (and you can
use all types in the same firewall):
- Blacklisting of individual
IP addresses and subnetworks is supported.
- Operational support:
- Commands to start, stop and clear the firewall
- Supports status monitoring with an audible alarm
when an "interesting" packet is detected.
- Wide variety of informational commands.
- VPN Support
- Support for Traffic Control/Shaping
integration.
- Wide support for different GNU/Linux Distributions.
- Media Access Control (MAC)
Address Verification
Last updated 2/5/2003 - Tom Eastep
Copyright © 2001-2003 Thomas M. Eastep.