[nsp] Network Firewall

Lawrence Wong lawrencewong72 at yahoo.com
Thu Jun 17 10:33:05 EDT 2004


Hi Miguel,

Any idea how well Linux+Netfilter would stand up
against TCP/UDP/ICMP floods?

--- Luis Miguel Cruz <luismi at b2bi.es> wrote:
> Maybe a linux box using netfilter?
> 
> Lawrence Wong wrote:
> 
> > Hi all,
> > 
> > I am currently looking for a firewall to install
> in
> > our corporate network. Our network mainly runs on
> > Cisco hardware which made me consider using Cisco
> > firewalls as well. We use public IPs hence no NAT
> is
> > required.
> > 
> > Does anyone have any experience to share on the
> Cisco
> > PIX firewalls? Or any other firewalls to
> recommend?
> > 
> > I noticed that compared to other vendors, Cisco
> PIX
> > seems to lack in the area of SYN/UDP DDoS flood
> > protection? The closest which I read from it's
> manual
> > for 6.3 is the usage of some paraments in the
> "static"
> > command to indirectly manage flooding, but static
> is
> > used in NAT mode.
> > 
> > TIA!
> > 
> > 
> > 	
> > 		
> > __________________________________
> > Do you Yahoo!?
> > New and Improved Yahoo! Mail - 100MB free storage!
> > http://promotions.yahoo.com/new_mail 
> > _______________________________________________
> > cisco-nsp mailing list  cisco-nsp at puck.nether.net
> > https://puck.nether.net/mailman/listinfo/cisco-nsp
> > archive at
> http://puck.nether.net/pipermail/cisco-nsp/
> > 
> 


__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 


More information about the cisco-nsp mailing list