DATE: 8 May 2010
LOCATION: Reston Library
TIME: 10 am
TOPIC: Stateful Firewall
PRESENTER: Ivan Makfinsky
The Netfilter kernel module, popularly known as iptables, provides a
powerful and, often, very flexible toolbox for building Linux based
firewalls. While clustering Linux based firewalls may not be new, these
clusters are often not capable or configured to maintain stateful
connections during fail-over scenarios, connections such as SSL
transactions and SSH connections. By combining Netfilter with a couple
of open source projects, one can construct a cluster of Linux systems
that enable seamless firewall failover such that stateful connections
are protected and maintained.
Senior Systems Architect, Ivan Makfinsky, of Endosys, Inc., a Linux and
Open Source Software consulting company, will demonstrate how clustered,
stateful Linux based firewalls can be constructed using Red Hat
Enterprise Linux and software from the Fedora EPEL (Extra Packages for