Pf

From SOWNWiki

Jump to: navigation, search
Name Pf
Deployed on sown-test,
Website http://www.openbsd.org/faq/pf/


The BSD Packet filter is the main firewall for any of the BSD family of Unix Operating Systems.

The School of Electronics and Computer Science has historically used pf in its firewall, particularly for IPv6 traffic. As such SOWN has had to investigate how certain packets related to Mobile IPv6 traffic pass through this kind of firewall.

Unfortunately pf does not work too well when using Mobile IPv6. It does not understand certain Mobility headers, nor does it allow Router advertisement class packets to pass through the firewall.

Subsequently SOWN recommends against using pf in Mobile Aware networks.