Re: Looking for a Firewall for a Small Business



DevilsPGD wrote:
In message <1168191168.016503.24790@xxxxxxxxxxxxxxxxxxxxxxxxxxxx>
"Bryan" <BTRichardson@xxxxxxxxx> wrote:

I've got a friend who owns a small business. He's got some employees
that like to surf the web a bit too much and wants to limit their
access to only a few sites. However, each employee needs to access
different sites, [..]

m0n0wall or pfSense would both do the trick.

Hi,
i am fan of m0n0wall and sometimes of pfSense, but in this scenario,
they are a wrong solution. Both have no possibility of building groups
of IPs, so you have to build for every allowed IP and user a complete
rule. A PIX 515 could do the job, but can't handle static entries in the
DHCP-Server. One possible solution could be a Proxy (Squid) with
authentication and ACLs.

bye
Christoph

.



Relevant Pages

  • Re: FreeBSD on IDE Flash disk drive
    ... server running DHCP and pf firewall. ... m0n0wall gets around this by running out of RAM after booting from flash ... m0n0wall uses IPFW, while pfSense uses pf. ...
    (freebsd-questions)
  • Re: porting bsd web interface (php) to linux /fc 4.
    ... I'm looking to port the php web interface for pfsense to linux. ... Have you posted these questions on the pfsense, m0n0wall, m0n0wall-dev ...
    (Fedora)
  • Re: FreeBSD based router ...
    ... static routing and are fine with 100Mb ether on the router, I've been happy with using soekris net48XX boxes using m0n0wall ... both FreeBSD based. ...
    (freebsd-questions)