Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Best firewall to use for a corperate environenment
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
angill
Tux's lil' helper
Tux's lil' helper


Joined: 26 Aug 2003
Posts: 87
Location: Ohio

PostPosted: Thu Sep 11, 2003 4:43 pm    Post subject: Best firewall to use for a corperate environenment Reply with quote

Currently I run Raod Runner's "Guardian Firewall/VPN access" that is installed on my sisco router and controlled by Road Runner support. My idea goal would be to eliminate that service from them and put a gentoo box between my router and my hubs to control network access. I have read quite a bit about home users sharing internet connections, but this is in regards to a 30 user network.
_________________
what if the hokey pokey is what it's all about?
Back to top
View user's profile Send private message
Beaker
n00b
n00b


Joined: 22 Apr 2003
Posts: 26
Location: Raleigh, NC

PostPosted: Thu Sep 11, 2003 4:51 pm    Post subject: Reply with quote

I think the answer will depend on what services you need to make accesible to the outside world. Your post suggests that you currently allow VPN access. Would you still require that? What about an email server or web server?

If you just want to enable internet connection sharing, then a Gentoo box running iptables or a *BSD box would probably be fine. (I know, I know - this is a Gentoo forum, but I hear lots of good things about *BSD too). :)
Back to top
View user's profile Send private message
angill
Tux's lil' helper
Tux's lil' helper


Joined: 26 Aug 2003
Posts: 87
Location: Ohio

PostPosted: Thu Sep 11, 2003 6:49 pm    Post subject: Reply with quote

I do run vpn access in from the outside, as well as run a mail server from the inside. I'm just tired of having to call them just to add access to a certain port so someone in my office can connect to something.
_________________
what if the hokey pokey is what it's all about?
Back to top
View user's profile Send private message
pmjdebruijn
Guru
Guru


Joined: 24 Jul 2003
Posts: 506
Location: Sittard, The Netherlands

PostPosted: Thu Sep 11, 2003 8:50 pm    Post subject: Reply with quote

I could recommend:

http://www.shorewall.net/
(emerge -vp shorewall)

Bye,
DrZ
Back to top
View user's profile Send private message
paranode
l33t
l33t


Joined: 06 Mar 2003
Posts: 679
Location: Texas

PostPosted: Thu Sep 11, 2003 9:54 pm    Post subject: Reply with quote

If you don't mind learning something new, OpenBSD is really good for this stuff. Of course, Gentoo will work also, but OpenBSD's pf (packet filter) is much easier to learn than iptables.
_________________
Meh.
Back to top
View user's profile Send private message
EvilN
n00b
n00b


Joined: 13 Feb 2003
Posts: 47
Location: Stockholm, Sweden

PostPosted: Sat Sep 13, 2003 6:22 pm    Post subject: Reply with quote

Yepp, OpenBSDs packef filter (wich is really much more than a packet filter...stateful, priority classing and such) owns IP tables (my oppinion of course). Also OpenBSD is pretty hard in the default install so you dont have to be a security wizzard to turn off services and path forever (although a normal OpenBSD release seems to get around 3-10patches during its lifetime excluding packages).

Absolutley my first choise for firewalls or any server directly connected to internet.
That is, if you can get it running at all...OpenBSDs HW support is REEEAAALLY bad.
Check those compability lists before even trying.
_________________
Juniper Networks Certified Internet Associate
JNCIA-M #0090
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum