<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Allen Pomeroy &#187; papers</title>
	<atom:link href="http://www.pomeroy.us/category/papers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.pomeroy.us</link>
	<description>IT security thoughts and personal stuff</description>
	<lastBuildDate>Sat, 28 Jan 2012 08:55:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>High availability firewalls with OpenBSD, pf and CARP</title>
		<link>http://www.pomeroy.us/2009/05/high-availability-firewalls-with-openbsd-pf-and-carp/</link>
		<comments>http://www.pomeroy.us/2009/05/high-availability-firewalls-with-openbsd-pf-and-carp/#comments</comments>
		<pubDate>Fri, 15 May 2009 21:42:03 +0000</pubDate>
		<dc:creator>apomeroy</dc:creator>
				<category><![CDATA[papers]]></category>
		<category><![CDATA[fw]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.networkforensics.us/?p=61</guid>
		<description><![CDATA[One can now inexpensively build a fault tolerant firewall cluster that removes any single point of failure in the security policy enforcement points at your security zone boundaries. Synchronous firewall state table updates and an open source version of virtual router redundancy protocol (CARP) gives the ability to seamlessly insert or remove firewalls from a [...]]]></description>
			<content:encoded><![CDATA[<p>One can now inexpensively build a fault tolerant firewall cluster that removes any single point of failure in the security policy enforcement points at your security zone boundaries. Synchronous firewall state table updates and an open source version of virtual router redundancy protocol (CARP) gives the ability to seamlessly insert or remove firewalls from a cluster.  No more patching firewalls at 2am hoping for the best (or not patching because it&#8217;s too hard).</p>
<p><a href="http://blog.networkforensics.us/docs/high-availability-firewalls-using-openbsd-pf-pfsync-and-carp.pdf">PDF</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pomeroy.us/2009/05/high-availability-firewalls-with-openbsd-pf-and-carp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

