Netfilter

Denis Ducamp / Hervé Schauer Consultants - English translation: Frédéric Lavecot

Septembre 2000


Reproduction forbidden

1. Introduction

This talk will present the following aspects :

1.1 Historical

Rusty Russel works at watchguard http://www.watchguard.com editor of security solutions around the Firebox

2. Packet Filtering

2.1 The notion of chains

2.2 Filtering possibilities

2.3 Connexion tracing

2.4 Technical tests

2.5 Drawbacks

2.6 Other filtering possibilities

3. Address translation

3.1 Concerned chains

3 chains are concerned by the Address translation

3.2 Source address translation

3.3 Destination address translation

3.4 Behaviour

4. Conclusion

5. References

6. Documentation


HSC ® © Hervé Schauer Consultants 2000 - 4 bis, rue de la gare - 92300 Levallois-Perret
Phone : +33 141 409 700 - Fax : +33 141 409 709 - Email : <secretariat@hsc.fr>