Re: Secure Network Design (DMZ, LAN, etc)

From: Volker Kindermann (bugtraq@secspace.de)
Date: 08/19/02


Date: Mon, 19 Aug 2002 21:37:24 +0200
From: Volker Kindermann <bugtraq@secspace.de>
To: security-basics@securityfocus.com


> My other main question regarding firewalls is whether or not a Linux
> box running IPTables would be good enough or should I look at a
> commercial > solution (Checkpoint, Raptor, etc). I have a very tight
> budget so IPTables is attractive, but I want to make sure I have a
> solid long-term solution that can handle lots of traffic.

Here I would recommend you a machine running OpenBSD with pf. If you
won't go with writing firewall-rules with a texteditor, there's a great
gui frontend for this: fwbuilder (http://fwbuilder.sourceforge.net).

I'm sure OpenBSD's pf will outperform Linux with iptables and
additionally pf IMHO is more stable than iptables. Give it a try. :-)

 -volker



Relevant Pages

  • Re: Firestarter
    ... > I am new to linux and firewalls. ... I have installed Firestarter which I am ... > learning more about IPtables and have found a few good tutorials. ...
    (comp.os.linux.security)
  • Firestarter
    ... I am new to linux and firewalls. ... I have installed Firestarter which I am ... learning more about IPtables and have found a few good tutorials. ...
    (comp.os.linux.security)
  • Re: Newbie needs some help
    ... > about firewalls for Linux. ... would have to do to is to configure it, by the help of iptables command. ... so you wont have to learn iptables and to write your own script. ...
    (alt.linux)
  • Re: Newbie needs some help
    ... > about firewalls for Linux. ... would have to do to is to configure it, by the help of iptables command. ... so you wont have to learn iptables and to write your own script. ...
    (alt.os.linux)
  • Re: Need advice about breakin attempt
    ... >> firewalls that run Linux with iptables... ... Linux running iptables. ... special hardware in the router. ...
    (alt.os.linux)

Quantcast