Firewall for network

beafer

Member
Feb 24, 2000
78
0
0
Here is what i have:
Home lan with 5-6 pcs.
smc(4br) router and smc 5 port switch
alcatel 1000 dsl modem

What i want to do:
I run 2 websites on off my server and ftp. I want to be able to protect these pc's the best way possible. I can get a pc to be dedicated just to the firewall but i dont know what os to use. I would prefer linux but always will do use windows. I use to use zone but after a day or so, it would just start blockin all incoming traffic for my sites and ftp. Some bug i guess but i would love to have a machine just dedicated to doing that if there is a solution out there. Anyone?
 

Nothinman

Elite Member
Sep 14, 2001
30,672
0
0
Download a Linux distro or a BSD and start reading documentation, there's no quick way to really learn the stuff. You could use a floppy firewall like Coyote, but I don't know how customizable they are.
 

Nothinman

Elite Member
Sep 14, 2001
30,672
0
0
I would choose between FreeBSD or OpenBSD, Net would work but it's more of an academic project than anything else =)

Coyote Linux is at *drumroll* coyotelinux.com

There are other floppy based, Linux firewalls but I don't know their names cause I use a full fledged distro (Debian to be specific)
 

Heisenberg

Lifer
Dec 21, 2001
10,621
1
0
BSD distro's are great if you want an extremely high level of security and don't mind putting in a fairly large amount of time to get up and running. The pre-built linux-based solutions are good because they're very easy to setup and manage, and still have good levels of security.
 

beafer

Member
Feb 24, 2000
78
0
0
How would i be able to protect my lan if the pc is not directly connected to the dsl modem. that is what the router is doing for me. I would use that firewall pc for server work like dhcp, port forwarding, etc...
 

Nothinman

Elite Member
Sep 14, 2001
30,672
0
0
BSD distro's

To clarify BSDs don't have distros. They are completely seperate OSes, different kernel, different user-land (somewhat), different boot sequence, etc. The only thing they bear in common with Linux is they're both unix-like and the BSD license is compatible with the GPL.

How would i be able to protect my lan if the pc is not directly connected to the dsl modem. that is what the router is doing for me

Usually the firewall would replace the router, hook the DSL up to the firewall and let it do the protecting and routing.
 

Heisenberg

Lifer
Dec 21, 2001
10,621
1
0


<< BSD distro's

To clarify BSDs don't have distros. They are completely seperate OSes, different kernel, different user-land (somewhat), different boot sequence, etc. The only thing they bear in common with Linux is they're both unix-like and the BSD license is compatible with the GPL.
>>



Sorry - bad choice of words. I've messed with linux so much lately I got used to saying that.

I'm not familiar with the SMC router being used, but don't they usually have built-in firewalling of some type?
 

skyking

Lifer
Nov 21, 2001
22,614
5,718
146
The freeBSD solution works well. We use any old 486 machine, the system will run on as little as 8 meg of ram and a 350 meg harddrive. A couple of ISA NIC's, some programming, and you are ready to go. you msy be able to sell the router and get enough money to pay for the firewall, since the firewall can perform NAT.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
One of the best books out there is "building and configuring Linux and OpenBSD firewalls". Its written for OpenBSD 2.7(I think) and RedHat 6.2, but the concepts are similar. I would personally recommend OpenBSD 2.9-stable. I can set one up without a ruleset in about 2 hours. And thats a long estimate. The rule set would take me another hour at most depending on how much customization you want. Debian or Slackware would be a great choice, but I dont know them as well. With OpenBSD you have the choice of about 9 different architectures too
 

Iron Woode

Elite Member
Super Moderator
Oct 10, 1999
31,147
12,663
136
Don't forget freesco. Also runs on minimal hardware and is quite fast and secure.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |