Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. The Lounge
  3. Firewall

Firewall

Scheduled Pinned Locked Moved The Lounge
phpsysadminsecurity
24 Posts 10 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B Bradml

    No we want to be able to set up a VPN etc.


    Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

    J Offline
    J Offline
    Johan Pretorius
    wrote on last edited by
    #6

    What box is facing the net? windows/unix/linux


    Artificial Intelligence is no match for Natural Stupidity
    No one can understand the truth until he drinks of coffee's frothy goodness. ~Sheik Abd-al-Kadir
    I can't always be wrong ... or can I?

    B 1 Reply Last reply
    0
    • J Johan Pretorius

      What box is facing the net? windows/unix/linux


      Artificial Intelligence is no match for Natural Stupidity
      No one can understand the truth until he drinks of coffee's frothy goodness. ~Sheik Abd-al-Kadir
      I can't always be wrong ... or can I?

      B Offline
      B Offline
      Bradml
      wrote on last edited by
      #7

      Basically this is how it is structured: Web> Modem > Ancient Router with built in firewall(Doesn't work too well) ans VPN support.> Print server(OLD); New printer; 1 Ps3; 4 Windows Boxes; 1 SUSE box; central networked storage; multiple media devices; a couple laptops SO basically she needs a hardware firewall at the place of the router.


      Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

      realJSOPR J R 4 Replies Last reply
      0
      • B Bradml

        Basically this is how it is structured: Web> Modem > Ancient Router with built in firewall(Doesn't work too well) ans VPN support.> Print server(OLD); New printer; 1 Ps3; 4 Windows Boxes; 1 SUSE box; central networked storage; multiple media devices; a couple laptops SO basically she needs a hardware firewall at the place of the router.


        Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

        realJSOPR Offline
        realJSOPR Offline
        realJSOP
        wrote on last edited by
        #8

        I have a xincom. It's fairly inexpensive, lots of features, and better than either a linksys OR a netgear.

        "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
        -----
        "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

        B 1 Reply Last reply
        0
        • B Bradml

          Basically this is how it is structured: Web> Modem > Ancient Router with built in firewall(Doesn't work too well) ans VPN support.> Print server(OLD); New printer; 1 Ps3; 4 Windows Boxes; 1 SUSE box; central networked storage; multiple media devices; a couple laptops SO basically she needs a hardware firewall at the place of the router.


          Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

          J Offline
          J Offline
          Johan Pretorius
          wrote on last edited by
          #9

          DNS? DHCP? NAT? You can setup the suse box to act as the router if you dont find a hardware sollution. It could save you alot of time and effort - i had a network using it and havent picked up any problems but i changed it to freeBSD becouse it was a low end box now it works gr8.


          Artificial Intelligence is no match for Natural Stupidity
          No one can understand the truth until he drinks of coffee's frothy goodness. ~Sheik Abd-al-Kadir
          I can't always be wrong ... or can I?

          B 1 Reply Last reply
          0
          • B Bradml

            Basically this is how it is structured: Web> Modem > Ancient Router with built in firewall(Doesn't work too well) ans VPN support.> Print server(OLD); New printer; 1 Ps3; 4 Windows Boxes; 1 SUSE box; central networked storage; multiple media devices; a couple laptops SO basically she needs a hardware firewall at the place of the router.


            Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

            realJSOPR Offline
            realJSOPR Offline
            realJSOP
            wrote on last edited by
            #10

            Make double-damn sure that the first thing you do on your firewall is change the admin password (and user ID if it will let you). To make things just a little more difficult, you could also change the internal subnet IP to something other than 192.168.x.x.

            "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
            -----
            "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

            B 1 Reply Last reply
            0
            • J Johan Pretorius

              DNS? DHCP? NAT? You can setup the suse box to act as the router if you dont find a hardware sollution. It could save you alot of time and effort - i had a network using it and havent picked up any problems but i changed it to freeBSD becouse it was a low end box now it works gr8.


              Artificial Intelligence is no match for Natural Stupidity
              No one can understand the truth until he drinks of coffee's frothy goodness. ~Sheik Abd-al-Kadir
              I can't always be wrong ... or can I?

              B Offline
              B Offline
              Bradml
              wrote on last edited by
              #11

              I'd rather not on a network this size. As soon as you use a PC you have to worry about constantly updating it and it will be too much work to get all the features exactly right. I am more likely to nitpick if I actually have the ability to change settings.


              Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

              1 Reply Last reply
              0
              • B Bradml

                Hey all. I need some advice for a friend. She has had a bit of trouble with hackers getting into her network. She has asked me what firewall I recommend and I honestly don't know what best suites her circumstances. It has been a very long time since I have used a firewall that wasn't a Cisco. I was thinking along the lines of one of the Lynksis boxes, or maybe a netgear. It is just a home network so she doesn't have a huge budget but she dies need decent security. Maybe I will just organize her a Cisco.....


                Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                M Offline
                M Offline
                marius_romanus
                wrote on last edited by
                #12

                I would recommend a Netgear. I also had these kind of problems. Then I plugged a Netgear Router+FW in, and no problems anymore since then. It is easy to configure and very reliable ! Additionally I have a ZA Software FW also installed. Marius

                --------------------------------------------------------- Complete freedom is a state without context ---------------------------------------------------------

                1 Reply Last reply
                0
                • realJSOPR realJSOP

                  Make double-damn sure that the first thing you do on your firewall is change the admin password (and user ID if it will let you). To make things just a little more difficult, you could also change the internal subnet IP to something other than 192.168.x.x.

                  "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                  -----
                  "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                  B Offline
                  B Offline
                  Bradml
                  wrote on last edited by
                  #13

                  Please Mr Simmons... tell me more! ;P


                  Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                  1 Reply Last reply
                  0
                  • realJSOPR realJSOP

                    I have a xincom. It's fairly inexpensive, lots of features, and better than either a linksys OR a netgear.

                    "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                    -----
                    "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                    B Offline
                    B Offline
                    Bradml
                    wrote on last edited by
                    #14

                    Those xincom units look like the best option I have seen. What model are you using?


                    Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                    realJSOPR 1 Reply Last reply
                    0
                    • B Bradml

                      Hey all. I need some advice for a friend. She has had a bit of trouble with hackers getting into her network. She has asked me what firewall I recommend and I honestly don't know what best suites her circumstances. It has been a very long time since I have used a firewall that wasn't a Cisco. I was thinking along the lines of one of the Lynksis boxes, or maybe a netgear. It is just a home network so she doesn't have a huge budget but she dies need decent security. Maybe I will just organize her a Cisco.....


                      Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                      P Offline
                      P Offline
                      Phil Harding
                      wrote on last edited by
                      #15

                      I use a US Robotics wireless router+modem+FW combi thing, before that a DLink ISDN router+modem+FW thing and never had any network intrusion problems, although plenty of attempts. Change the admin passwords, close external access to the devices configuration applications, restrict internal access to the device to your networks ip address or subnets. You could run the excellent tests found at Gibson research to assess vulnerability http://www.grc.com[^] I don't run any SW bound firewall, just AV software If memory serves the USR device cost around £80

                      Phil Harding.
                      myBlog [^]  |  mySite [^]

                      1 Reply Last reply
                      0
                      • B Bradml

                        Hey all. I need some advice for a friend. She has had a bit of trouble with hackers getting into her network. She has asked me what firewall I recommend and I honestly don't know what best suites her circumstances. It has been a very long time since I have used a firewall that wasn't a Cisco. I was thinking along the lines of one of the Lynksis boxes, or maybe a netgear. It is just a home network so she doesn't have a huge budget but she dies need decent security. Maybe I will just organize her a Cisco.....


                        Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                        R Offline
                        R Offline
                        Rocky Moore
                        wrote on last edited by
                        #16

                        You might try SmoothWall to turn an old machine into a firewall. Suppose to be good and if you got an extra box laying around (I know I usually do), then it is an easy way to go. The software had tons of options. http://www.smoothwall.org/[^]

                        Rocky <>< Latest Code Blog Post: Vista for Web Development, Read this first! Latest Tech Blog Post: USA City Burnt To Death...

                        1 Reply Last reply
                        0
                        • B Bradml

                          Hey all. I need some advice for a friend. She has had a bit of trouble with hackers getting into her network. She has asked me what firewall I recommend and I honestly don't know what best suites her circumstances. It has been a very long time since I have used a firewall that wasn't a Cisco. I was thinking along the lines of one of the Lynksis boxes, or maybe a netgear. It is just a home network so she doesn't have a huge budget but she dies need decent security. Maybe I will just organize her a Cisco.....


                          Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                          S Offline
                          S Offline
                          S Douglas
                          wrote on last edited by
                          #17

                          Get her a SonicWall[^]. Does everything the Cisco will but at cheaper cost.


                          I'd love to help, but unfortunatley I have prior commitments monitoring the length of my grass. :Andrew Bleakley:

                          1 Reply Last reply
                          0
                          • B Bradml

                            Basically this is how it is structured: Web> Modem > Ancient Router with built in firewall(Doesn't work too well) ans VPN support.> Print server(OLD); New printer; 1 Ps3; 4 Windows Boxes; 1 SUSE box; central networked storage; multiple media devices; a couple laptops SO basically she needs a hardware firewall at the place of the router.


                            Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                            R Offline
                            R Offline
                            Roger Stoltz
                            wrote on last edited by
                            #18

                            You don't say anything about whether it should be wireless or wired, nor if your friend has some kind of switch or if all equipment is plugged directly into the router. I've used D-Link 604[^] for about six years and I think it's a great alternative for home network solutions. D-Link 604 is a router, DHCP server and firewall in one single box for approx. $50. The firewall also has the ability to disable ping response to WAN side and DoS attack protection, but that has to be configured through the web interface. -- Rog


                            "It's supposed to be hard, otherwise anybody could do it!" - selfquote

                            "No one remembers a coward!" - Jan Elfström 1998
                            "...but everyone remembers an idiot!" - my lawyer 2005 when heard of Jan's saying above

                            B 1 Reply Last reply
                            0
                            • R Roger Stoltz

                              You don't say anything about whether it should be wireless or wired, nor if your friend has some kind of switch or if all equipment is plugged directly into the router. I've used D-Link 604[^] for about six years and I think it's a great alternative for home network solutions. D-Link 604 is a router, DHCP server and firewall in one single box for approx. $50. The firewall also has the ability to disable ping response to WAN side and DoS attack protection, but that has to be configured through the web interface. -- Rog


                              "It's supposed to be hard, otherwise anybody could do it!" - selfquote

                              "No one remembers a coward!" - Jan Elfström 1998
                              "...but everyone remembers an idiot!" - my lawyer 2005 when heard of Jan's saying above

                              B Offline
                              B Offline
                              Bradml
                              wrote on last edited by
                              #19

                              It is wired (sorry to omit that).


                              Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                              1 Reply Last reply
                              0
                              • B Bradml

                                Those xincom units look like the best option I have seen. What model are you using?


                                Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                realJSOPR Offline
                                realJSOPR Offline
                                realJSOP
                                wrote on last edited by
                                #20

                                I have the DPG-402. The DPG-502 is a newer version of the same unit.

                                "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                                -----
                                "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                                B 1 Reply Last reply
                                0
                                • realJSOPR realJSOP

                                  I have the DPG-402. The DPG-502 is a newer version of the same unit.

                                  "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                                  -----
                                  "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                                  B Offline
                                  B Offline
                                  Bradml
                                  wrote on last edited by
                                  #21

                                  Cheers mate, Email me when you find out. Brad [-at-] trueguava [dot] com


                                  Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                  realJSOPR 1 Reply Last reply
                                  0
                                  • B Bradml

                                    Cheers mate, Email me when you find out. Brad [-at-] trueguava [dot] com


                                    Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                    realJSOPR Offline
                                    realJSOPR Offline
                                    realJSOP
                                    wrote on last edited by
                                    #22

                                    I edited my original reply - it's a DPG402. I think it's been replaced by the 502.

                                    "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                                    -----
                                    "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                                    B 1 Reply Last reply
                                    0
                                    • realJSOPR realJSOP

                                      I edited my original reply - it's a DPG402. I think it's been replaced by the 502.

                                      "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                                      -----
                                      "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                                      B Offline
                                      B Offline
                                      Bradml
                                      wrote on last edited by
                                      #23

                                      How much was that?


                                      Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                      realJSOPR 1 Reply Last reply
                                      0
                                      • B Bradml

                                        How much was that?


                                        Brad Australian -CAUTION- The previous statement may contain traces of PHP, and by reading this statement you negate the right to vote me down.

                                        realJSOPR Offline
                                        realJSOPR Offline
                                        realJSOP
                                        wrote on last edited by
                                        #24

                                        The 502 is going for $168 from amazon.com

                                        "Why don't you tie a kerosene-soaked rag around your ankles so the ants won't climb up and eat your candy ass..." - Dale Earnhardt, 1997
                                        -----
                                        "...the staggering layers of obscenity in your statement make it a work of art on so many levels." - Jason Jystad, 10/26/2001

                                        1 Reply Last reply
                                        0
                                        Reply
                                        • Reply as topic
                                        Log in to reply
                                        • Oldest to Newest
                                        • Newest to Oldest
                                        • Most Votes


                                        • Login

                                        • Don't have an account? Register

                                        • Login or register to search.
                                        • First post
                                          Last post
                                        0
                                        • Categories
                                        • Recent
                                        • Tags
                                        • Popular
                                        • World
                                        • Users
                                        • Groups