HP-UX 11i Version 2 Release Notes (October 2003)

Security
HP-UX IPFilter
Chapter 7
180
Updated and enhanced for version 2.2.
HP-UX Host Intrusion Detection System Version 2.2 Release Notes
Product changes and installation.
Obsolescence
This maintenance release (v2.2) is the actively supported version. All older versions are
discontinued. Customers using older versions of the product are strongly encouraged to
update to this version.
HP-UX IPFilter
HP-UX IPFilter (B9901AA) version A.03.05.06 is a statefull system firewall that filters
IP packets to control packet flow in or out of a machine. It works as a security defense by
cutting down on the number of exposure points on a machine.
HP-UX IPFilter is based on ipfilter v3.5 alpha 5 from the public domain.
Summary of Change
HP-UX IPFilter version A.03.05.06 provides:
support for HP-UX 11i v2 on the Itanium-based platform
automatic installation with all HP-UX Operating Environments
Impact
There are no impacts.
Compatibility
Using IPFilter and ServiceGuard requires specific IPFilter rules to ensure proper
operation of ServiceGuard clusters. The rules for using IPFilter and ServiceGuard are
documented in the IPFilter version A.03.05.06 Release Note, available at
http://www.docs.hp.com.
Performance
There is no significant performance impact with HP-UX IPFilter.
Documentation
All customer documentation and white papers can be found in the Internet and Security
Solutions section at http://www.docs.hp.com, including:
Installing and Administering HP-UX IPFilter version A.03.05.06