hosted by liquidweb


Go Back   Web Hosting Talk : Web Hosting Main Forums : Hosting Security and Technology : Firewall issue - a solution is needed!
Reply

Hosting Security and Technology Configuring and optimizing web hosting servers and operating systems, developing administration scripts, building servers, protecting against hackers, and general security (SSL certificates, etc.)
Forum Jump

Firewall issue - a solution is needed!

Reply Post New Thread In Hosting Security and Technology Subscription
 
Send news tip View All Posts Thread Tools Search this Thread Display Modes
  #1  
Old 02-02-2004, 09:16 AM
iCu iCu is offline
WHT Addict
 
Join Date: Jan 2003
Posts: 168
Question

Firewall issue - a solution is needed!


Starting with 1 server, it was enough to setup a firewall on that server. It was also OK to set it up the protection on the second server... Now, the fourth server is on its way. They are all and will be Windows servers.

We dont want a firewall on each server any longer. I have heard that its possible to setup a *nix box to work like a firewall. Then all data go through that server first and gets sorted. Is this possible and how?

How do you do it?

Thanks a lot!

Reply With Quote


Sponsored Links
  #2  
Old 02-02-2004, 09:17 AM
Knogle Knogle is offline
Web Hosting Master
 
Join Date: Feb 2002
Posts: 3,727
I know this used to be possible, but the project was stopped just a couple of weeks ago. Use the search function. . . you should be able to find something.

__________________
Have you Floble'd today?

Reply With Quote
  #3  
Old 02-02-2004, 09:20 AM
Knogle Knogle is offline
Web Hosting Master
 
Join Date: Feb 2002
Posts: 3,727
BTW, how about getting a hardware firewall? They're a bit more expensive but can handle a much higher load. They generally have a better performance rate too.

__________________
Have you Floble'd today?

Reply With Quote
Sponsored Links
  #4  
Old 02-02-2004, 09:24 AM
iCu iCu is offline
WHT Addict
 
Join Date: Jan 2003
Posts: 168
Its not easy to find what you search for here - its not Google

Yes, we have a hardware firewall in our plans too but how much more can it handle dataprocessing compared to a linux box also having in mind the extra costs? Is it worth it?

Reply With Quote
  #5  
Old 02-02-2004, 01:15 PM
stdunbar stdunbar is offline
Web Hosting Master
 
Join Date: Aug 2002
Location: Superior, CO, USA
Posts: 633
First, on the hardware vs. software firewall - how many more machines will you have behind the firewall? How much traffic do the machines currently process? How much traffic will they process? How freaked out are your Windows administrators going to be when they have to administer a Unix box?

A hardware firewall can be an industrial strength solution but a real one isn't cheap in terms of both initial purchase price and, depending on the experience of your staff, the maintenance. For example, do you have anybody who knows Cisco IOS? (there are plenty of providers besides Cisco - they are just one of the big ones).

Almost any PC running a Unix O/S and two NIC's can provide what you want. I personally lean towards IPF (http://coombs.anu.edu.au/~avalon/ip-filter.html) but the Linux iptables/ipchains will work too.

Basically you have a box with two NIC's in it. The Unix box has both NAT (network address translation) and filtering. The NAT portion translates a single IP address that the internet knows you as into your internal network (some non-routable network such as 192.168.1.0/24). The filtering allows you to punch through things like port 80 (www) and 25 (smtp). Just as you can control what comes into your network you can also control what goes out. If you don't want your machines making connections to any random port (generally a good thing for server type machines) you can block that too on the firewall.

The Unix box could also host email and be a DNS relay or you could have your Windows boxes do that.

Reply With Quote
  #6  
Old 02-03-2004, 02:22 AM
Crucial Crucial is offline
Boston Colocation and VPS
 
Join Date: Dec 2003
Location: Boston, MA
Posts: 592
Almost similar to other replys but im going to post anyways, (FreeBSD)

I have a machine setup running FreeBSD with minor kernel alterations and a gateway setup. This whole process of installing FreeBSD altering kernel and setting up so nic1 forwards to nic2 takes about 20 minutes. I will recomend ipfw2 and ipf for freebsd. Outstanding firewalls.

__________________
Axcelx Technolgies LLC
http://www.axcelx.com/
Boston Colocation + VPS Hosting
Boston, MA / Toll-Free 1-(877)-8AX-CELX

Reply With Quote
Reply

Related posts from TheWhir.com
Title Type Date Posted
GoGrid Adds New Firewall Services to Cloud SDN Architecture Web Hosting News 2013-04-11 10:50:21
Phoenix NAP Adds Firewall and Storage Capabilities to Secured Servers Web Hosting News 2013-01-21 14:15:08
Web Host HostGee Rolls Out Managed Firewall Cluster Service Web Hosting News 2012-10-22 15:36:38
Hawaiian Cloud Firm Lokahi Offers Managed Cloud Security Solutions from StillSecure Web Hosting News 2012-03-15 12:01:03
CloudPassage Launches Network Security Solution for Multi-Cloud Environments Web Hosting News 2012-02-01 11:30:30


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes
Postbit Selector

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump
Login:
Log in with your username and password
Username:
Password:



Forgot Password?
Advertisement:
Web Hosting News:



 

X

Welcome to WebHostingTalk.com

Create your username to jump into the discussion!

WebHostingTalk.com is the largest, most influentual web hosting community on the Internet. Join us by filling in the form below.


(4 digit year)

Already a member?