HP-UX IPFilter Version 17 Administrator's Guide

B.8 example.6.......................................................................................................................................134
B.9 example.7.......................................................................................................................................135
B.10 example.8.....................................................................................................................................135
B.11 example.9.....................................................................................................................................135
B.12 example.10...................................................................................................................................135
B.13 example.11...................................................................................................................................135
B.14 example.12...................................................................................................................................136
B.15 example.13...................................................................................................................................136
B.16 example.sr....................................................................................................................................137
B.17 firewall.........................................................................................................................................138
B.18 server...........................................................................................................................................138
B.19 tcpstate.........................................................................................................................................138
B.20 BASIC.NAT..................................................................................................................................139
B.21 nat.eg...........................................................................................................................................139
B.22 nat-setup......................................................................................................................................140
B.23 ipmon.conf...................................................................................................................................141
B.24 pool.conf......................................................................................................................................141
C HP-UX IPFilter Kernel Tunable Parameters...............................................................143
C.1 Overview.......................................................................................................................................143
C.2 fr_tcpidletimeout..........................................................................................................................144
C.3 fr_statemax....................................................................................................................................144
C.4 ipf_icmp6_passthru......................................................................................................................144
C.5 ipl_buffer_sz.................................................................................................................................144
C.5.1 Displaying Logging Buffer Statistics....................................................................................145
C.6 ipl_suppress..................................................................................................................................145
C.7 ipl_logall.......................................................................................................................................145
C.8 Configuring and Viewing Kernel Tunable Parameters................................................................145
C.8.1 Configuring Kernel Tunable Parameters on HP-UX 11i v3..................................................145
C.8.2 Configuring Kernel Tunable Parameters on HP-UX 11i v1 and HP-UX 11i v2...................146
C.8.2.1 Configuring Kernel Tunable Parameters Using ndd....................................................146
C.8.2.2 Configuring fr_statemax and fr_tcpidletimeout Using kmtune or kctune..................146
C.9 Enabling and Disabling NAT Functionality.................................................................................147
D HP-UX IPFilter Static Linking......................................................................................149
D.1 Overview......................................................................................................................................149
D.2 Static Linking of HP-UX IPFilter on HP-UX 11i v2 and HP-UX 11i v3........................................149
D.3 Static Linking of HP-UX IPFilter on HP-UX 11i v1......................................................................149
E Performance Guidelines............................................................................................151
E.1 System Configuration...................................................................................................................151
E.2 Rule Loading.................................................................................................................................152
E.3 Rule Configuration........................................................................................................................152
E.4 Traffic.............................................................................................................................................153
E.5 Performance Monitoring...............................................................................................................154
Index...............................................................................................................................155
Table of Contents 9