The Book of PF, 4th edition

原始链接: https://nostarch.com/book-of-pf-4th-edition

## PF 圣经:概要 《PF 圣经》是一本全面的指南,旨在掌握 OpenBSD 数据包过滤 (PF),这是 OpenBSD、FreeBSD 和 NetBSD 系统上网络安全的关键工具。 第四版已更新至最新版本(分别为 7.x、14.x 和 10.x),并解决了现代网络挑战,例如增加的带宽需求和更恶劣的网络环境。 本书涵盖了从 IPv4 和 IPv6 网络的基础规则集创建(包括 NAT、DMZ 和无线设置)到高级技术,例如流量整形、故障转移配置和主动防御攻击者等所有内容。读者将学习如何使用 CARP、relayd 和 OpenBSD 的流量整形系统等工具优化网络性能,以及 NetFlow 等监控和可视化选项。 最终,《PF 圣经》使系统管理员具备利用 PF 的全部潜力来构建和维护安全、响应迅速且高度可用的网络的专业知识。

Hacker News 新闻 | 过去 | 评论 | 提问 | 展示 | 招聘 | 提交 登录 《PF书》,第四版 (nostarch.com) 12 分,由 0x54MUR41 1小时前发布 | 隐藏 | 过去 | 收藏 | 1 条评论 dhruv3006 3分钟前 [–] 非常钦佩无淀粉出版社 - 你们的书很棒!回复 指南 | 常见问题 | 列表 | API | 安全 | 法律 | 申请YC | 联系 搜索:
相关文章

原文

Download Chapter 3: Into the Real World

The OpenBSD packet filter, PF, is central to the OpenBSD and FreeBSD network toolbox. With more services placing high demands on bandwidth and an increasingly hostile Internet environment, no sysadmin can afford to be without PF expertise.

The fourth edition of The Book of PF covers the most up-to-date developments in PF, including new content on IPv6, dual stack configurations, the “queues and priorities” traffic-shaping system, NAT and redirection, wireless networking, spam fighting, failover provisioning, logging, and more. 

You’ll also learn how to:

  • Create rulesets for all kinds of network traffic, IPv4 and IPv6 both, whether crossing a simple LAN, hiding behind NAT, traversing DMZs, or spanning bridges or wider networks
  • Set up wireless networks with access points, and lock them down using authpf and special access restrictions
  • Maximize flexibility and service availability via CARP, relayd, and redirection
  • Build adaptive firewalls to proactively defend against attackers and spammers
  • Harness OpenBSD’s latest traffic-shaping system to keep your network responsive, or use ALTQ and Dummynet configurations on FreeBSD to full effect
  • Stay in control of your traffic with monitoring and visualization tools (including NetFlow)

The Book of PF is the essential guide to building a secure network with PF. With a little effort and this book, you’ll be well prepared to unlock PF’s full potential.

Covers OpenBSD 7.x, FreeBSD 14.x, and NetBSD 10.x

联系我们 contact @ memedata.com