• [^] # Top 10 reasons IPTABLES is better than PF

    Posté par (courriel, site web personnel) . En réponse au journal Un exploit pour OpenBSD. Évalué à 7.

    10. Parsing IPTABLES config files excellent preparation for subsequent
    learning of Asian pictograph-based languages.

    9. Standard logging via syslogd helps eliminate clutter in /var/log.

    8. GPL prevents Steve Jobs from stealing your code.

    7. Simplistic man pages encourage development of social skills via mailing
    lists.

    6. Multiple distributions, versions, kernels, modules, plugins, etc. keep
    hackers confused as to exactly what they're attacking.

    5. "Mangle" just sounds so much more 133+ than "Scrub".

    4. Complexity of structure leads to more opportunities for obfuscation and
    subsequent job security.

    3. New and experimental kernel modules make life exciting again.

    2. GUI and Web based utilities mean that anyone can set one up without knowing
    what they're doing.

    And the number one reason IPTABLES is better than PF:

    1. No distracting arguments about whether to port it to OpenBSD.
    http://archive.openbsd.nu/?ml=openbsd-pf&a=2004-10&m(...)

    pertinent adj. Approprié : qui se rapporte exactement à ce dont il est question.