Filtering questions

Mika Borner <[email protected]>
Newsgroups gmane.comp.security.firewalls.ipfilter
Message-ID <[email protected]>
Hi all

I have three questions:

-Is it possible to fast-route only fragmented packets? We plan to route 
port 25 traffic to an outgoing spamfilter running on Solaris. In rare 
cases, we might have fragmented packets in our network. In that case 
only the first packet will get rerouted, as the following fragments do 
not contain port information and will never be received by the 
spamfilter. I would like to handle this in a sane way...

-As some customers misuse port 25 for non-SMTP-traffic, I would like to 
either block or transparently pass such traffic. The "simple matching of 
content" -feature would come very close to what I want. Is it still 
experimental? Or maybe someone knows of an other way to accomplish this...

-Are there instructions how to replace Solaris 10U7 ipf with a custom one?

Thanks for your help!

Cheers
Mika
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.