LinuxQuestions.org
Visit the LQ Articles and Editorials section
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 12-04-2006, 12:25 PM   #16
win32sux
Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 371Reputation: 371Reputation: 371Reputation: 371

@ gracon52

hi, i was just wondering what you have planned to do about data (not network) security and stuff... you will be encrypting the traffic between your remote locations, right (VPN, SSL, etc)??

BTW, i do agree with chort in that a commercial solution is many times a better option than DIY... of course it all depends on one's abilities and the boss's needs and stuff - and in the end you weigh the pros and cons of each option and make an objective decision...

that said, setting-up some NAT iptables/netfilter firewalls is pretty straight-forward stuff, and anyone with half-decent iptables/netfilter experience can tackle it... not sure how much experience you have with these things (although you did mention you have linux geeks in da house so maybe it doesn't even matter)...

Last edited by win32sux; 12-04-2006 at 02:57 PM.
 
Old 12-05-2006, 03:29 AM   #17
jimbo1954
Member
 
Registered: Oct 2006
Location: High Wycombe, Bucks, UK.
Distribution: Debian and Fedora Core in equal measure
Posts: 258

Rep: Reputation: 33
Ah Whatever, I was going to shut up, but this is a fertile discussion. Chort, you clearly know the subject and equally clearly have a view which I would be foolish to disregard. In many ways, I agree with what you are saying. I'm going to be picky here for a couple of lines: If the guy is posting to LQ, he has got his head round the Free Software idea, and the mere fact that he asks whether he should buy "tailor-made" or roll his own indicates to me that he has either the personal capacity to do the job, or some good folk behind him who can. Also, I assume he is talking "Institutions" as in "Academic", and at least here in the UK, that means "strapped for cash". Under those circumstances, I would sooner have him grow a very precisely built device which does what he wants for the budget he has, rather than buy a commercial box that, because of budgetary constraints, is not quite the solution, but "near enough", and continues to be a drain on his resources while not really being right.

From a completely different perspective, most, if not all of the software that is currently available in Open Source owes its generation to those of us who you sort-of label as "hobbyists" (you wrote "If you want a fun hobby for the weekend, build your own netfilter firewall ....If you want to protect something of value, buy the firewall."). That is to a great extent a fair criticism, but without the barnstormers, like the folk who stared Cisco, there would BE no product to commercialise and support professionally, etc etc.

The reason we are having this discussion, I think, is because you take the "sound commercial" line, I take the "Open Source Barnstormer" view, and what Gracon52 is asking falls very neatly between the two platforms. We may never agree, but I appreciate the reasons for your point of view, which is difficult to dismiss
 
  


Reply

Tags
firewall, security


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
internet works only when firewall is set to "no firewall" mymoon Linux - Security 1 05-07-2006 01:29 PM
SSH "Connection Refused" problem when there is no firewall/router involved in Fedora4 d2army Linux - Networking 5 10-04-2005 05:01 PM
A "personal" firewall is not a firewall, after all vharishankar General 5 08-02-2005 10:53 AM
Portforwarding using JordanH's "firewall for home users" script steepcreep Linux - Networking 1 07-29-2004 08:15 PM
Quesiton about "FIREWALL setting" in "SETUP"--please help out yuzuohong Linux - Networking 1 05-14-2002 11:42 PM


All times are GMT -5. The time now is 01:42 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration