hosted by liquidweb


Go Back   Web Hosting Talk : Web Hosting Main Forums : Colocation and Data Centers : a good firewall
Reply

Colocation and Data Centers Find data centers, server hardware, bandwidth providers, and techniques for colocation purposes. Get advice on colocation web hosting, review providers and offer suggestions on choosing colocation hosting services and the right datacenter. If your service is unavailable, please click here.
Forum Jump

a good firewall

Reply Post New Thread In Colocation and Data Centers Subscription
 
Send news tip View All Posts Thread Tools Search this Thread Display Modes
  #1  
Old 06-24-2008, 03:24 PM
madpato madpato is offline
Junior Guru
 
Join Date: May 2008
Posts: 178
*

a good firewall


well i need to acquire a good firewall (price friendly) nothing too advanced just one that gets the job done (port/ip filtering, etc)
its for a small business, any ideas? i know that cisco stuff is some of the best available, but they are kinda expensive.

PS: dunno if this goes in this forum, if im wrong move the thread to the right forum

Reply With Quote


Sponsored Links
  #2  
Old 06-24-2008, 03:31 PM
LibraHost LibraHost is offline
Newbie
 
Join Date: Jun 2008
Location: NY
Posts: 17
how about a Cisco ASA 5505? (with the advanced license) runs about $1100 combined. the advanced license is needed for dmz creation, also uncreases number of concurrent connections from 10k to 25k.

HTH

Reply With Quote
  #3  
Old 06-24-2008, 05:58 PM
ollebanan ollebanan is offline
WHT Addict
 
Join Date: Mar 2008
Posts: 110
Quote:
Originally Posted by madpato View Post
well i need to acquire a good firewall (price friendly) nothing too advanced just one that gets the job done (port/ip filtering, etc)
its for a small business, any ideas? i know that cisco stuff is some of the best available, but they are kinda expensive.

PS: dunno if this goes in this forum, if im wrong move the thread to the right forum
Just configure iptables, it's free!

Reply With Quote
Sponsored Links
  #4  
Old 06-24-2008, 06:29 PM
hhw hhw is offline
Web Hosting Master
 
Join Date: Oct 2002
Location: Vancouver, B.C.
Posts: 1,867
Check out pfsense, it's FreeBSD with PF and a user friendly web interface.

__________________
Han Hwei Woo, ASTUTE HOSTING AS54527 *Advanced and customized solutions for the savvy customer!*
Dedicated Hosting and CDN out of Vancouver, Seattle, LA, Toronto, NY, Miami, and (soon) London
We include CDN, anycast DNS, onboard KVMoIP, firewall, local and global load-balancing, and privatenet with all servers.
sales@astutehosting.com

Reply With Quote
  #5  
Old 06-24-2008, 06:35 PM
111111z 111111z is offline
Junior Guru Wannabe
 
Join Date: Apr 2008
Posts: 85
thats how I do the firewall too....

Just configure iptables, it's free

Via webmin(makes it easy to configure) its called linux firewall in webmin....

__________________
IPNeighbor.com - See who you share Your Web server with.
BuildAServer.info Build a 1U server

Reply With Quote
  #6  
Old 06-24-2008, 07:58 PM
jewps jewps is offline
Newbie
 
Join Date: Mar 2007
Posts: 15
I second PFSense. It's stupidly flexible and capable.

Reply With Quote
  #7  
Old 06-24-2008, 09:02 PM
page-zone page-zone is offline
Web Host
 
Join Date: Jun 2002
Posts: 1,787
I'll third pfsense, and works nicely as a transparent bridge.

Reply With Quote
  #8  
Old 06-25-2008, 04:19 PM
madpato madpato is offline
Junior Guru
 
Join Date: May 2008
Posts: 178
i do have iptables, the deal is that i need a firewall for a server rack, so it must be hardware -.-

Reply With Quote
  #9  
Old 06-25-2008, 04:41 PM
dwinslow dwinslow is offline
Newbie
 
Join Date: May 2005
Posts: 25
You need a Netscreen SSG-5. They are very inexpensive, very solid, and very fast. Just my $.02

Reply With Quote
  #10  
Old 06-25-2008, 06:16 PM
Red Squirrel Red Squirrel is offline
Web Hosting Master
 
Join Date: Feb 2008
Posts: 792
You could get a 1U server with two nics and make it dedicated as a Linux firewall (pfsense, or other distro)

__________________
http://www.uovalor.com/ :: UO server

Reply With Quote
  #11  
Old 06-25-2008, 06:19 PM
RN-Chris RN-Chris is offline
WHT Addict
 
Join Date: Feb 2008
Location: Murfreesboro, TN
Posts: 162
Quote:
Originally Posted by Red Squirrel View Post
You could get a 1U server with two nics and make it dedicated as a Linux firewall (pfsense, or other distro)
This. I'm actually working on something very similar to this myself.

__________________
Chris Reed
Revogate Inc.
Revolutionizing Business Technology
Web Hosting, XenServer Virtualization, and IT Consulting

Reply With Quote
  #12  
Old 06-25-2008, 07:40 PM
rey rey is offline
Web Hosting Master
 
Join Date: Oct 2001
Location: USA
Posts: 1,020
If you attempt to turn a server into a firewall, you may want to consider redundancy due to possibility of HD crash, and so on. If your network is mission critical, I highly recommend to get a ready made, solid state firewall such as Netscreen, Sonicwall, Tipping Point or TopLayer.

If you want to handle DoS/DDoS, I recommend Gigabit interface. A lot of DoS/DDoS today can go as high as 400-500 or even 700Mbps. So, if your pipe to your provider is only 100Mbps, your firewall will only be effective to block less than 100Mbps attack.

Just a thought.

__________________
Reyner Natahamidjaja | GIP Networks Inc
SSAE 16 SOC 1 Type II, PCI Compliant and 24/7 Dedicated Onsite Staff
Protecting Businesses Against Power Outage and Down Time


Reply With Quote
  #13  
Old 06-26-2008, 12:21 PM
madpato madpato is offline
Junior Guru
 
Join Date: May 2008
Posts: 178
Quote:
Originally Posted by rey View Post
If you attempt to turn a server into a firewall, you may want to consider redundancy due to possibility of HD crash, and so on. If your network is mission critical, I highly recommend to get a ready made, solid state firewall such as Netscreen, Sonicwall, Tipping Point or TopLayer.

If you want to handle DoS/DDoS, I recommend Gigabit interface. A lot of DoS/DDoS today can go as high as 400-500 or even 700Mbps. So, if your pipe to your provider is only 100Mbps, your firewall will only be effective to block less than 100Mbps attack.

Just a thought.
The idea of pfsense is really interesting but our servers ar "almost" mission critical so i need something i can rely on. Any specific model u could tell me about?

Reply With Quote
  #14  
Old 06-26-2008, 03:53 PM
rey rey is offline
Web Hosting Master
 
Join Date: Oct 2001
Location: USA
Posts: 1,020
I've seen this more and more in our datacenter (both our cabinet and cage customers use this):
http://www.sonicguard.com/PRO4060.asp

Everyone seems to be happy with Sonicwall. It has quite a few features and easy management GUI.

Hope this helps.

__________________
Reyner Natahamidjaja | GIP Networks Inc
SSAE 16 SOC 1 Type II, PCI Compliant and 24/7 Dedicated Onsite Staff
Protecting Businesses Against Power Outage and Down Time


Reply With Quote
  #15  
Old 06-26-2008, 04:16 PM
Dynash Dynash is offline
Web Hosting Guru
 
Join Date: Apr 2008
Location: United Kingdom
Posts: 338

__________________
-Stephen. JavaKrypt.com - Antsta.co.uk

Reply With Quote
Reply

Related posts from TheWhir.com
Title Type Date Posted
GoGrid Adds New Firewall Services to Cloud SDN Architecture Web Hosting News 2013-04-11 10:50:21
WHD.global 2013: SiteLock Adds Web Application Firewall and CDN to Security Portfolio Web Hosting News 2013-03-19 13:48:01
Phoenix NAP Adds Firewall and Storage Capabilities to Secured Servers Web Hosting News 2013-01-21 14:15:08
Interoute Launches Cloud Firewall Service for Real-time View into Security Threats Web Hosting News 2012-12-04 16:00:56
Web Host HostGee Rolls Out Managed Firewall Cluster Service Web Hosting News 2012-10-22 15:36:38


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes
Postbit Selector

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump
Login:
Log in with your username and password
Username:
Password:



Forgot Password?
Advertisement:
Web Hosting News:



 

X

Welcome to WebHostingTalk.com

Create your username to jump into the discussion!

WebHostingTalk.com is the largest, most influentual web hosting community on the Internet. Join us by filling in the form below.


(4 digit year)

Already a member?