Reimplementing pf as an eBPF/XDP dataplane on Linux
882542F3884314B
15 points
3 comments
July 11, 2026
Related Discussions
Found 5 related stories in 51.2ms across 5,215 title embeddings via pgvector HNSW
- How Do I Profile eBPF Code? snaveen · 114 pts · July 28, 2026 · 53% similar
- Co-Opting Linux Processes for High-Performance Network Simulation (2022) teleforce · 19 pts · July 24, 2026 · 48% similar
- Building my own network stack uneven9434 · 96 pts · August 30, 2026 · 47% similar
- Show HN: We Implemented the IPv8 Internet-Draft in Linux, Libc, and BGP turborigby · 69 pts · August 14, 2026 · 45% similar
- BSDnas – fork that continues TrueNAS CORE on current FreeBSD NexRebular · 15 pts · August 25, 2026 · 44% similar
Discussion Highlights (2 comments)
asmnzxklopqw
PF configuration language that author considers to be “the clearest expression of firewall intent anyone has shipped” is 95% the configuration language of ipfilter, the initial solaris and bsd firewall software. Quite suspicious that the author doesn’t mention it, especially when pf started merely as a clone of the latter.
throawayonthe
this seems very interesting, but the prose is extremely hard to read