Click to See Complete Forum and Search --> : dedicated Firewall ?


anton
11-25-2001, 05:09 PM
Hello,

I'm looking into putting a dedicated firewall pc after my DSL router and openning all ports on DSL router ...

what will be the best firewall (distribution?) to do this on old pc ...

that I can easily configure remotely (thru web?) ... and that has many functions ?

thx :)

jlany
11-25-2001, 06:02 PM
Originally posted by anton:
<STRONG>Hello,

I'm looking into putting a dedicated firewall pc after my DSL router and openning all ports on DSL router ...

what will be the best firewall (distribution?) to do this on old pc ...

that I can easily configure remotely (thru web?) ... and that has many functions ?

thx :)</STRONG>

Take a look here: http://www.clarkconnect.org/

:)

anton
11-25-2001, 06:48 PM
thx...

and what everybody thinks about astaro ? (http://www.astaro.com/)

kevin79
11-25-2001, 07:11 PM
I looked at astaro a while ago, but the system req were huge, something like a pII 400, that just seems like a waste of a good PC to me.

Try [/URL]Smoothwall (http://www.smoothwall.org)if you want to use a harddrive or FreeSco (http://www.freesco.org) if you want to run it off of a floppy. I've used both (I am currently using Smoothwall) and I like them both. I used Freesco for almost 2 years before I switched to Smoothwall.

[ 25 November 2001: Message edited by: kevin79 ]

digiital
11-25-2001, 08:06 PM
Easy setup www.e-smith.org (http://www.e-smith.org)

Includes FTP/WEB/MYSQL/SAMBA.... all out of the box next to no setup required.

m3rlin
11-25-2001, 08:06 PM
i think astaro is very good, at least it have very options, but we have very dificulty installing, you may wannt to chek the astaro forum in www.astaro.com. (http://www.astaro.com.) But astaro probebly will be a very good choise .)

stiles
11-25-2001, 11:20 PM
If I were going to use any of the appliance like distros it would be www.astaro.com (http://www.astaro.com) , I believe it's the only one that uses iptables, and therefore the only stateful packet filter of the bunch. I wouldn't worry too much about the system requirements cause the high requirements have to do with running a VPN gateway (encryption overhead).

I run a very modified install of Debian potato with 2.4.x kernel and all the file systems are XFS. My iptable rules are based off of this (http://www.sentry.net/~obsid/IPTables/rc.scripts.dir/current/) script.