Facebook   Twitter    e-mail newsletter    YouTube    RSS Feed    Android App    iPhone and iPad App     BlackBerry App    


Results 1 to 15 of 15

Thread: Linux/Free Firewall for Network

  1. #1
    Senior Member robertwj's Avatar
    Join Date
    Jun 2011
    Location
    Port Elizabeth
    Posts
    245

    Default Linux/Free Firewall for Network

    I am looking to implement a Firewall onto my network. I want something FREE and simple to use preferably something with a user interface instead of commands.

    I want it to be able to monitor Network usage/sites visited ect as well as Block Websites and ports.

    What software would you recommend that can be installed on a stand alone firewall PC?

    Thanks

  2. #2
    Hobbit Peder's Avatar
    Join Date
    Oct 2006
    Location
    Pretoria South Africa
    Posts
    8,368
    Blog Entries
    1

    Default

    Endian Firewall

    It works quite nicely, though i am learning much about it as i go on

    http://www.endian.com/en/community/
    www.houseofmyglory.com
    I only use Ozone Friendly Language

  3. #3
    Karmic Sangoma ghoti's Avatar
    Join Date
    Jan 2005
    Location
    Hotel California
    Posts
    34,263
    Blog Entries
    9

    Default

    Quote Originally Posted by robertwj View Post
    I am looking to implement a Firewall onto my network. I want something FREE and simple to use preferably something with a user interface instead of commands.

    I want it to be able to monitor Network usage/sites visited ect as well as Block Websites and ports.

    What software would you recommend that can be installed on a stand alone firewall PC?

    Thanks
    From my other post:

    1) ClearOS - One of the best, but it only monitors web browsing. It does not monitor all traffic, so if a user is torrenting, there is no method of tracking this.
    2) Untangle - Requires expensive apps to be really functional, and our Untangle just started maxing out our upload line... for no apparent reason. It also sucks with new hardware and runs on outdated debian.
    3) Endian - A polished system, but only has raw ntop to manage internet usage
    4) IPCop - Have not tried it out as their website looks like it was done by a 5 year old about 10 years ago. Also, you cant download 2.0.4 (you have to download 2.0.3 and then upgrade to 2.0.4 - this indicates to me lazy developers... which puts me off)
    5) Zentyal aka Ebox - Have not tried this since it was ebox, but last I checked into only metered web browsing, not all traffic.
    6) PFSense - Have not tried it yet.
    7) m0n0wall - Have not tried yet
    8) Smoothwall - Have not tried yet

    So what FOSS firewall/gateway solutions are out there to help me manage how much a user downloads? What do you recommend?
    http://mybroadband.co.za/vb/showthre...internet-usage

    Ive tried a bunch of them. Right now experimenting with Endian. It really locks a network down nicely. Like torrents are dead on the network... but its hard to see reports for user usage
    If you outlaw crack cocaine, only outlaws will have crack cocaine. If you outlaw guns, only outlaws will have guns.

  4. #4

    Default

    i would say look at the following:

    ClearOS
    SmoothWall
    Monowall

    they about the best iv worked with, but all depends if your gonna need VPN connectivity later on and so on...

    Have fun, i love setting up new firewalls!

  5. #5
    Active Member
    Join Date
    Mar 2010
    Location
    Brackenfell, CT
    Posts
    99

    Default

    Hi

    Why not go the hardware route? Look at a Routerboard from Mikrotik, which runs RouterOS and has a window like front end called Winbox. The RB750 for instance runs on 5W of power, a lot less than a PC. You can also download the trial version and run it on a PC to test it.

  6. #6
    Super Grandmaster gregmcc's Avatar
    Join Date
    Jun 2006
    Location
    127.0.0.1, United Kingdom
    Posts
    16,422

    Default

    Been running smoothwall for years. You can run sarg and report on the downloads.

  7. #7
    Senior Member robertwj's Avatar
    Join Date
    Jun 2011
    Location
    Port Elizabeth
    Posts
    245

    Default

    Thanks for the options everyone. I've just downloaded Smoothwall and i'll be installing it tonight. Very excited to give it a bash

  8. #8

    Default

    Just my opinion but a software firewall is not a good business decision. You are putting the firewall inside the very thing you are trying to protect? The incredibly sophisticated threats out there have made software firewalls redundant.

  9. #9
    Karmic Sangoma ghoti's Avatar
    Join Date
    Jan 2005
    Location
    Hotel California
    Posts
    34,263
    Blog Entries
    9

    Default

    Quote Originally Posted by LTMeg View Post
    Just my opinion but a software firewall is not a good business decision. You are putting the firewall inside the very thing you are trying to protect? The incredibly sophisticated threats out there have made software firewalls redundant.
    Like?
    If you outlaw crack cocaine, only outlaws will have crack cocaine. If you outlaw guns, only outlaws will have guns.

  10. #10
    Super Grandmaster gregmcc's Avatar
    Join Date
    Jun 2006
    Location
    127.0.0.1, United Kingdom
    Posts
    16,422

    Default

    Quote Originally Posted by LTMeg View Post
    Just my opinion but a software firewall is not a good business decision. You are putting the firewall inside the very thing you are trying to protect? The incredibly sophisticated threats out there have made software firewalls redundant.
    Umm all firewalls are software based!

  11. #11

    Default

    You know what I mean ;-)

  12. #12
    Karmic Sangoma ghoti's Avatar
    Join Date
    Jan 2005
    Location
    Hotel California
    Posts
    34,263
    Blog Entries
    9

    Default

    Quote Originally Posted by LTMeg View Post
    You know what I mean ;-)
    Actually I dont. What "sophisticated" threats are you talking about?

    IE. Im trying to find out what your custom software/hardware based firewall is able to deal with that a software based firewall (on hardware ) cant do.
    If you outlaw crack cocaine, only outlaws will have crack cocaine. If you outlaw guns, only outlaws will have guns.

  13. #13

    Default

    Quote Originally Posted by ghoti View Post
    IE. Im trying to find out what your hardware based firewall is able to deal with that a software based firewall (on hardware ) cant do.
    Thats what I meant ;-)

  14. #14
    Karmic Sangoma ghoti's Avatar
    Join Date
    Jan 2005
    Location
    Hotel California
    Posts
    34,263
    Blog Entries
    9

    Default

    Quote Originally Posted by LTMeg View Post
    Thats what I meant ;-)
    I still dont know what sophisticated threats you are talking about....

    The most sophisticated threats I can think like... like highly intelligent spear phishing (social engineering)... well no firewall will help you there. So I really want to know what sophisticated you are referring to.
    If you outlaw crack cocaine, only outlaws will have crack cocaine. If you outlaw guns, only outlaws will have guns.

  15. #15
    Super Grandmaster gregmcc's Avatar
    Join Date
    Jun 2006
    Location
    127.0.0.1, United Kingdom
    Posts
    16,422

    Default

    I'm also confused - Checkpoint for instance, who are the world leaders in firewalls, have a software based firewall which will easily stand up to the "incredibly sophisticated threats"

Similar Threads

  1. Linux/BSD firewall
    By Asha'man X in forum Linux
    Replies: 10
    Last Post: 06-05-2008, 10:19 AM
  2. For those considering a Linux Firewall
    By Bernie in forum Networking and Security
    Replies: 3
    Last Post: 18-09-2007, 09:35 PM
  3. Linux Firewall
    By Syndyre in forum PC Hardware and Gadgets
    Replies: 6
    Last Post: 03-02-2007, 01:40 PM
  4. USB Modem + linux firewall
    By patto in forum Sentech MyWireless
    Replies: 2
    Last Post: 07-03-2006, 11:26 AM
  5. Linux firewall problem - MTU
    By LCE in forum iBurst Wireless and iCall
    Replies: 10
    Last Post: 27-02-2005, 07:26 PM

Tags for this Thread

Bookmarks

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •