Creating and Using Oracle® Solaris Zones

Exit Print View

Updated: May 2015
 
 

Oracle Solaris IP Filter in Shared-IP Zones

Oracle Solaris IP Filter provides stateful packet filtering and network address translation (NAT). A stateful packet filter can monitor the state of active connections and use the information obtained to determine which network packets to allow through the firewall. Oracle Solaris IP Filter also includes stateless packet filtering and the ability to create and manage address pools. See Chapter 4, About IP Filter in Oracle Solaris, in Securing the Network in Oracle Solaris 11.2 for additional information.

Oracle Solaris IP Filter can be enabled in non-global zones by turning on loopback filtering as described in Chapter 5, Configuring IP Filter, in Securing the Network in Oracle Solaris 11.2 .

Oracle Solaris IP Filter is derived from open source IP Filter software.