[Gllug] Firewall distro

David Abbishaw David at Abbishaw.com
Sat Feb 5 17:27:48 UTC 2005


You didn't mention what version of Windows you needed to run, however
remember that 2003 (and XP SP2) both have reasonable built in firewalls. 
Admittedly not better than a discreet piece of hardware doing just the work
of a firewall but not bad, since SP2 in XP probably as good as IPtables in
linux.

I would recommend Smoothwall if you don't mind using NAT, I run a bunch of
windows machines /linux machines behind it and find it very useful and very
quick and easy to configure.  The Smoothwall forum is also very useful if
you want to modify the machine for something outside of the normal distro.
You can normally have a Smoothwall installed and tested in about half an
hour if the hardware is good.

 


Message: 3
Date: Fri, 4 Feb 2005 17:47:20 +0000 (GMT)
From: Simon Wilcox <essuu at ourshack.com>
Subject: [Gllug] Firewall distro
To: GLLUG <gllug at gllug.org.uk>
Message-ID:
	<Pine.LNX.4.58.0502041738280.16016 at kryten.city.digitalcraftsmen.net>
Content-Type: TEXT/PLAIN; charset=US-ASCII


Hello,

I've been asked to host a Windows server and since I would trust the
security of it about as far as I could spit out a rat, I want to put it
behind a firewall.

I've configured our other servers (debian) using the standard iptables
stuff and that seems to be fine but I don't have a vast experience of
doing this to build firewalls.

What recommendations would people have for either apps to run on top of
debian to help configure the firewall and/or distros that specifically
target this application ?

In addition to the firewall itself (which should probably act as a bridge
rather than a router and wouldn't need NAT), I'd be interested in running
Snort or similar for intrustion detection and potentially a VPN but that
is a secondary requirement.

Many thanks for the advice,

Simon.



-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug




More information about the GLLUG mailing list