Hacker News new | ask | show | jobs
by hapless 201 days ago
The user interface is literally 1000x better. That's all

Linux is enormously higher performance but it is a huge pain in the ass to squeeze the performance out AND retain any level of readability

which is why there are like a dozen vendors selling various solutions that quietly compile their proprietary filter definitions to bpf for use natively in the kernel netfilter code...