Firewall Options

Conundrum

Senior member
Jun 18, 2001
331
0
0
I'm curious to know what software firewall solutions people are currently using and why. For home, small business, and large network environments. What do you think does the best job for each one, and why?
 

Goosemaster

Lifer
Apr 10, 2001
48,775
3
81
umm....sorry but your question concerns a very complex topic.

What type of environment are we talking about here: home or business?
 

JackMDS

Elite Member
Super Moderator
Oct 25, 1999
29,487
392
126
Originally posted by: Conundrum
I'm curious to see what the opinions of people who have used various options for both recommend and why. Pros and cons to the question of existing hardware and software firewall solutions. Including if applicable custom configurations and suggestions on what ports are the highest risk and why.
If you want some one to write here a Book for you, I do not think that it is feasible.

May be this can Help, http://www.amazon.com/Essential-Compute...urity-Everyones-Internet/dp/1597491144

If you have a Broadband Internet, connection and you want to protect your self.

May be this can Help, http://www.ezlan.net/firewall.html

Freeware Security suit for Internet Connection Protection.
 

Conundrum

Senior member
Jun 18, 2001
331
0
0
Ok, I'll amend my initial post in a moment to asking people software firewall programs. =]
 

xSauronx

Lifer
Jul 14, 2000
19,582
4
81
Originally posted by: Conundrum
Ok, I'll amend my initial post in a moment to asking people software firewall programs. =]

then just check the security thread in the software forum, and keep software questions in that thread, or at least that forum
 

cmetz

Platinum Member
Nov 13, 2001
2,296
0
0
Conundrum, for home, WRT54GL with third party software, can do a lot and has a lot of real-router/real-firewall features at a SOHO price.

For small to medium sized businesses, OpenBSD/pf if the company's open minded, or ISR/IOS if they're not. The cisco solution is buggy as hell but conservative business types will buy cisco. I also do a lot with NetScreen firewalls, they have better performance and lower cost vs. an ISR, but they're just as buggy, much more painful to administer, and a harder vendor to convince business folks to buy from. There are a lot of new products in this space, such as the Juniper security routers and the cisco ASA, that look interesting but I haven't had an excuse to play with yet.

For large businesses, you're typically layering more specialized devices, getting some high-performance firewalls, maybe some load balances, some IDSs, spam filters, etc. Then it's not easy to recommend, it really depends on needs and budget.

For Windows software firewall, I've been pushing folks to use Sunbelt Kerio. It's okay, not great, not horrible, but I haven't had any problems with it. I've had a lot of problems with ZoneAlarm updates trashing Windows to the point where a reinstall is required, and in my experience Symantec products also have a habit of trashing everything beyond repair.
 

Conundrum

Senior member
Jun 18, 2001
331
0
0
Thanks for the detailed reply cmetz. I was hoping I wouldn't get thread crapped for my interest in the topic. It seems as though I'm posting in the wrong area though. I thought it would be applicable to post it in the network threat since I consider firewall software to be directly associated with networks. Since you wouldn't use the software without a network.

Kind of a gray area I suppose. I played around with firewall software a long time ago. Like Blackice Defender or something. I'm probably remembering it wrong. I think Panda had its own little software firewall solution as well that I played with. One from Norton that I'm betting is still around since Symantec is such a big company. Anyway, thanks for the input. I've got a friend who runs a small business and he was asking me about it one day. So I figured I'd just post here and see what the experts had to say.

Originally posted by: cmetz
Conundrum, for home, WRT54GL with third party software, can do a lot and has a lot of real-router/real-firewall features at a SOHO price.

For small to medium sized businesses, OpenBSD/pf if the company's open minded, or ISR/IOS if they're not. The cisco solution is buggy as hell but conservative business types will buy cisco. I also do a lot with NetScreen firewalls, they have better performance and lower cost vs. an ISR, but they're just as buggy, much more painful to administer, and a harder vendor to convince business folks to buy from. There are a lot of new products in this space, such as the Juniper security routers and the cisco ASA, that look interesting but I haven't had an excuse to play with yet.

For large businesses, you're typically layering more specialized devices, getting some high-performance firewalls, maybe some load balances, some IDSs, spam filters, etc. Then it's not easy to recommend, it really depends on needs and budget.

For Windows software firewall, I've been pushing folks to use Sunbelt Kerio. It's okay, not great, not horrible, but I haven't had any problems with it. I've had a lot of problems with ZoneAlarm updates trashing Windows to the point where a reinstall is required, and in my experience Symantec products also have a habit of trashing everything beyond repair.

 

Goosemaster

Lifer
Apr 10, 2001
48,775
3
81
Conundrum,

Please don't take this the wrong way, but you are asking for a LOT of information.
Cmetz gave you a great start with Cisco, Juniper, and grey-box (BSD or Linux) for larger environments, but for smaller environments, there are so many OS-flavors that it would take an eternity to spell out.
I would search the forums for firewall/security, search BSD forums for packetfilter, search windows forums (or the software forum on here) for firewalls etc.

There is a lot of information out there if you only look

As for your friend, that is a different question altogether. Tell us about the environment.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |