Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other firewalls
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old January 1st, 2012, 05:57 AM
zakazak zakazak is offline
Frequent Poster
 
Join Date: Sep 2010
Posts: 231
Default which firewall distro for my network?

Hi, I believe my ISP Router (some fritzbox) is too weak to handle my network. First it's only ment for 8mbit/s connection (and I have 20mbit/s) and second the CPU is always between 80%-100% (probably due to the ~8 devices which face the internet 24/7.. 4 of them with torrents running). So I thought I would use my old home-server to handle my whole network and then go with it into the fritzbox. The fritzbox would only handle one internet device then. As the fritzbox is a modem & router in once, I can't really skip it?

Anyway, the system would be a:
Dual Core 2 Duo 2,6Ghz
2GB RAM

Now, which distro would you guys recommend?
So far I thought about:
IpFire
Untangle
pfSense
Zentyal

Security is a big factor and I like the "traffic scanning" features. But I wonder if those will slow down my internet? The devices in this network do everything. Gaming,torrent,browsing,ftp-server,mails,etc...

Thanks
__________________
CIS & Mbam Pro
OpenDNS + DNSCrypt / EMET / UAC / Applocker
My complete "9 layers of protection" security setup
  #2  
Old January 1st, 2012, 06:18 AM
Cudni's Avatar
Cudni Cudni is offline
Global Moderator
 
Join Date: May 2009
Location: Somethingshire
Posts: 6,944
Default Re: which firewall distro for my network?

if you can, find a router that can cope with more than 8mbit. Secure or not that will continue to be a bottleneck
__________________
once we only had ideals, today they are the only things we are missing
Microsoft MVP, 2006 - 2013/14
  #3  
Old January 1st, 2012, 08:56 AM
zakazak zakazak is offline
Frequent Poster
 
Join Date: Sep 2010
Posts: 231
Default Re: which firewall distro for my network?

The question is, can the router also handle that many connections? Looking at my HTPC with uTorrent running I have 417 outbound connections and 297 inbound connections.. that's 1 device out of ~7.

Also I would need a good router (I guess best would be if it support dd-wrt?) which has a built in modem :/
__________________
CIS & Mbam Pro
OpenDNS + DNSCrypt / EMET / UAC / Applocker
My complete "9 layers of protection" security setup
  #4  
Old January 2nd, 2012, 02:51 PM
zakazak zakazak is offline
Frequent Poster
 
Join Date: Sep 2010
Posts: 231
Default Re: which firewall distro for my network?

I guess I will go for untangle. Think it provide a lot of features and security addons. I just hope that it won't slow my network speed
__________________
CIS & Mbam Pro
OpenDNS + DNSCrypt / EMET / UAC / Applocker
My complete "9 layers of protection" security setup
  #5  
Old January 3rd, 2012, 08:57 PM
deim0n deim0n is offline
Infrequent Poster
 
Join Date: Jan 2012
Location: USA
Posts: 2
Default Re: which firewall distro for my network?

I've used both Untangle and pFsense. I'd probably go with pFsense for the speed. You can still use Snort, Squid and other IDS type packages.
  #6  
Old January 6th, 2012, 06:23 PM
zakazak zakazak is offline
Frequent Poster
 
Join Date: Sep 2010
Posts: 231
Default Re: which firewall distro for my network?

Tried pfSense today.. using the live-cd worked.. could see the webinterface and configure around. Then I wanted to install it. Tried it 3 times.. after installing it tried to boot up and when you come to the screen with the options 1-8 it always freezed there :/
__________________
CIS & Mbam Pro
OpenDNS + DNSCrypt / EMET / UAC / Applocker
My complete "9 layers of protection" security setup
  #7  
Old January 9th, 2012, 07:42 PM
Alphalutra1's Avatar
Alphalutra1 Alphalutra1 is offline
Very Frequent Poster
 
Join Date: Dec 2005
Location: 127.0.0.0/255.0.0.0
Posts: 1,160
Default Re: which firewall distro for my network?

To try and skip your ISP's provided router/modem combo, look on the fritz's configuration page. Often these modem/router combos have an option called "bridging mode" which disables its router function so it becomes solely a modem. You can then connect your own router to it. That may alleviate your problems.

With all the uploading you are doing, you should really look into performing some QoS at the router level so you prioritize ACKs coming from your PC's. It'll make web-surfing and such much more pleasent when you also are torrenting.

Cheers,

Alphalutra1
__________________
Proud user of Gentoo, OpenBSD, dwm, (n)vi, heirloom-mailx, and pf
  #8  
Old January 10th, 2012, 06:37 AM
mack_guy911's Avatar
mack_guy911 mack_guy911 is offline
Very Frequent Poster
 
Join Date: Mar 2007
Posts: 2,483
Default Re: which firewall distro for my network?

if you looking for making a distro base firewall for home use not commercial then astaro security gateway

i tried all but like astaro more and stick with astaro security gateway if you dont want antivirus proxy filters .......like features you can use it without them as well there is another 2 great distro i highly recommend if you not looking for built in antivirus in firewall thats

endian and pfsense you get every thing speed to security and ease of use

you can try astaro online live demo it give you idea

http://www.astaro.com/resources/astaro-live-demos

i am using astaro gateway since my speed was 256kbps

now its 2mb till 20gb after that 256K so you can imagine

i dont use gaming or p2p but they are filter for them i blocked them.....etc all my need filtration with antivirus IPS ............etc it take about 4-5 kb speed loss only when you get speed in mbs you hardly notice

also there option of caching data if you disable it your data flow through ram only and its pretty more fast as hardisk in not caching data.

the connections that astaro supported is about 32000 connections at a time i guess its more than enough for a home users
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp

Last edited by mack_guy911 : January 10th, 2012 at 07:15 AM.
  #9  
Old January 10th, 2012, 07:12 AM
mack_guy911's Avatar
mack_guy911 mack_guy911 is offline
Very Frequent Poster
 
Join Date: Mar 2007
Posts: 2,483
Default Re: which firewall distro for my network?

also check those old thread but lot of information.

http://www.wilderssecurity.com/showthread.php?t=283905

http://www.wilderssecurity.com/showthread.php?t=284339

few years ago i dont even about what UTM or how to make router....etc


thanks to YeOldeStonecat i learn a lot from him and his forums
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp
  #10  
Old January 10th, 2012, 11:00 AM
mack_guy911's Avatar
mack_guy911 mack_guy911 is offline
Very Frequent Poster
 
Join Date: Mar 2007
Posts: 2,483
Default Re: which firewall distro for my network?

Quote:
Originally Posted by zakazak
Tried pfSense today.. using the live-cd worked.. could see the webinterface and configure around. Then I wanted to install it. Tried it 3 times.. after installing it tried to boot up and when you come to the screen with the options 1-8 it always freezed there :/


one more thing i like forget to add when you remove and re-install some partitions left not 100% clean best way when you install again some other UTM/router base distro use gparted tool and manually delete partitions and apply ok then start with blank nonpartition disk it work like candy

http://www.dedoimedo.com/computers/gparted.html

http://distrowatch.com/table.php?dis...on=partedmagic

just delete all partitions and apply ok simple like that then install
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp
  #11  
Old January 12th, 2012, 11:32 AM
zakazak zakazak is offline
Frequent Poster
 
Join Date: Sep 2010
Posts: 231
Default Re: which firewall distro for my network?

I only upload when no one is at home.. but yes QoS will still be needed.

Astaro looks pretty complicated to me :/

Another problem: I would also share HDDs in my router with the whole network :/ So I can also use it as some kind of NAS.
__________________
CIS & Mbam Pro
OpenDNS + DNSCrypt / EMET / UAC / Applocker
My complete "9 layers of protection" security setup
  #12  
Old January 14th, 2012, 11:08 AM
mack_guy911's Avatar
mack_guy911 mack_guy911 is offline
Very Frequent Poster
 
Join Date: Mar 2007
Posts: 2,483
Default Re: which firewall distro for my network?

well then you can try Zentyal or ClearOS
__________________
Scientific Linux 6.2, xubuntu 11.10 *2x, Linux mint 10, Linux mint 12, opensuse 11.4, windows vista, ubuntu 10.04 and windows xp
 

Wilders Security Forums > Security Products > other firewalls « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 06:26 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums