Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Looking for Hardware based Firewall

Status
Not open for further replies.

digatle

Technical User
Oct 31, 2003
85
US
I'm interested in hearing what would be worth looking into as far as a hardware based firewall (IE: hotpoint, cisco pix, ect) to consider for a medium sized business. I do not want to build a computer to install software however something that I wouldn't mind looking into would be a solution that is either a customized OS or running *nux or bsd based (like crunchbox).

What is everyone out there using these days to secure their network?

What is everyone out there using to secure a web server?
 
I'm using a Netgear FVS318 firewall router connecting via cable or DSL modem. It has VPN built in so it's nice for linking multiple locations over the Internet for very little money. It's also painfully simple to setup and configure. They're currently going for about $120 on Amazon.

 
NetScreen, WatchGuard and Pix are all good choices. I've also used SonicWalls, but some of those have had problems.

As for the Web server, depends on the OS. If you are talking Windows, use the lockdown tools, patch, patch, patch, rename the admin account, and only allow absolutely needed protocols to that server from the firewall. I know that NetScreen includes MAL(formed) URL options in its config. Not sure about the Watchguard or the PIX.

R.Sobelman
 
PIX firewalls are always my first choice, but with their high price tag they may not be an available option.

I've set up and maintained a few SonicWall products. I like them for their simplicity, but if you anticipate complex firewall rules or have a complex routing environment, they're not suitable in my opinion.

Netgear's FVS318 is aimed at the SOHO market. I wouldn't use it in a medium sized enterprise.

The following forum link discusses some of the other solutions available, like dedicated *nix firewall distros. I've never used one of the dedicated distros, but I use regual Linux based firewalls all the time:

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top