Ron Rosson wrote:
>I would like to see m0n0wall move to OpenBSD and use PF. We could also gain
>from the AUTHPF service to allow dynamic changing of rules as well. There
>are a lot of projects out there using OpenBSD on a CF for soekris like
>devices but none of them have a polished look that m0n0 has.
>
>
I agree with using pf, but not with OpenBSD. OpenBSD benchmarks show
poorer network performance than even FreeBSD 5.3. I'll try to dig up the
benchmarks that I'm thinking of. Nevertheless, OpenBSD was designed with
the idea of security over that of performance. |