best firewall option for FreeBSD

From: Geert Houben (sec@hict.nl)
Date: 02/27/02


Date: Wed, 27 Feb 2002 11:14:11 +0100
From: Geert Houben <sec@hict.nl>
To: freebsd-security@freebsd.org

Hi all,

I have to build a firewall for our University with 2 NIC's. One
connected to internet and the second connected to the network.
The e-mail is running on M$ Exchange, but this servers are placed
outside of the network.
With the firewall we would like to increase the security, but also make
it impossible for internal users to use anything else but http, https,
ssh, ftp-client,pop3-client, Outlook. So it has to be impossible to use
Morpheus, Kazaa, Napster etc.

What firewall software (Opensource) would you advice? Or do I have to
choose another OS?

Best regards,
Geert Houben

--
http://www.hict.nl
e-mail: g.houben@hict.nl
tel: +31(0)26 321 4177
fax: +31(0)26 321 4267
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message


Relevant Pages

  • RE: can ping but not browse
    ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
    (Fedora)
  • Re: Using a Linksys router, should I also use Zonealarm?
    ... public internet to access corporate network. ... In the "old days" when people used to use Dial-In instead of VPN you ware ... protected by corporate Firewall -- since there was no public Internet ...
    (microsoft.public.security)
  • RE: Hidden Ports
    ... this is done by the firewalls to prevent authenticated files from being replaced by trojans and connecting to the internet. ... kerio firewall ... or a program that already had network access attempted to ... > Depending on the Access setting for a component, ZoneAlarm Pro ...
    (Security-Basics)
  • Re: Entire Network
    ... Internet access is different and just because a firewall isn't ... Second, if it isn't the firewall, then often it is a case of the system ... any way a network guru. ... > The network connection works just fine from both computers for internet ...
    (microsoft.public.windowsxp.basics)
  • Re: Using a Linksys router, should I also use Zonealarm? Internet Acceptable Use Policy
    ... my browser's access to the Internet is restricted. ... I thought it was the company's firewall extending a slap on my ... > public internet to access corporate network. ... > NAT is Network Address Translation. ...
    (microsoft.public.security)