The Book of PF, 4th edition

nostarch.com

220 points by 0x54MUR41 2 days ago


iyn - 2 days ago

What's everyone's experience with modern PF in production? Also, not to start a holy war, but what people think about modern PF vs nftables? I've only ever used nftables (and only in fairly simple scenarios) but I've always been curious about the PF side of the world.

INTPenis - 2 days ago

It's a great book, I used to have some edition of it and it helped me a lot professionally with setting up firewalls, load balancing, traffic shaping and more.

I also had a book on Designing FreeBSD rootkits that was very educational.

Unfortunately I've given away all my books for more minimalistic living where I am instead dependent on digital information. Not sure how to feel about it.

dhruv3006 - 2 days ago

Lot of admiration for no starch - your books are great !

skywal_l - 2 days ago

PF = Packet Filter

gspr - 2 days ago

I'd love something similarly scoped centered around nftables. Does anyone have a suggestion? I see No Starch has a Linux Firewall book, but it's from 2008 and is thus iptables-based.

sunshine-o - 2 days ago

By the way, I see the book covers FreeBSD 14 but in FreeBSD 15 (released in December) PF got a big update [0].

- [0] https://www.netgate.com/blog/updates-to-the-pf-packet-filter...

MarginalGainz - 2 days ago

[dead]

sipelaut - 2 days ago

[flagged]