LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-18-2005, 03:50 PM   #1
Sarcha
LQ Newbie
 
Registered: Feb 2003
Posts: 15

Rep: Reputation: 0
Well Secured Network Configuration


I currently have a linux server on a static IP. This computer controls pretty much everything on the network (ie. mail, web, squid, NAT, firewall). I want to setup a more secured network and needed some help and idea's. I was thinking about setting up a one computer as a linux firewall that controls the internet connection, dhcp on the local lan and routing. I was thinking of trying smoothwall express 2. Our current server I was going to setup on a DMZ attached to the firewall computer. I think this should be a fairly secure setup provided it is configured correctly. Any other ideas or recommendations would be helpful. I have setup numerous small business servers just nothing quite as complex as what I am trying now.

Thanks for you input,
Scott
 
Old 02-18-2005, 04:43 PM   #2
ironwalker
Member
 
Registered: Feb 2003
Location: 1st hop-NYC/NewJersey shore,north....2nd hop-upstate....3rd hop-texas...4th hop-southdakota(sturgis)...5th hop-san diego.....6th hop-atlantic ocean! Final hop-resting in dreamland dreamwalking and meeting new people from past lives...gd' night.
Distribution: Siduction, the only way to do Debian Unstable
Posts: 506

Rep: Reputation: Disabled
Personally I like seperate firewall box.
handleing as you said dhcp dns if need be and ids and maybe sniffer if needed etc.

I wouldnt use mail proxy net proxy(squid) or antivirus stuff on this firewall box.
Id use the proxy mail and antiviri on a seperate box.

I use an old cyrex MandA things old...got it brand new condition from dealsdepot.com
http://www.dealsdepot.com
only because I had no ax to old pc's and all the ones friends wanted to give me were just too poopy.


They change and get new stuff weekly/daily sometimes.My box was 36 dollars and my other box was 45 dollars US.they were fast delivery too.

anyways,ya I like seperate only because depending on how many users you have....memmory and cpu power things can get bogged haveing everything on one server.
I have few raid setups and wanted to make this box(raid 5) proxy with squid and some addons as well as mail server but squid and any proxy for that matter doesnt fare well on raid 5 setup.


My firewall box is ipcop 3...version 4 the newest and recent has excellent qualities and changed to LFS base but doesnt work with my old equiptment.It has mega addons...so does version 3.

Last edited by ironwalker; 02-18-2005 at 04:44 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Slackware 10 network configuration. Problem with 8139 network card drivers ! Padmakiran Linux - Networking 8 03-27-2007 06:48 AM
can't connect to secured network gonnafail Linux - Wireless Networking 3 09-08-2005 12:23 PM
Network Configuration Hanging in FC4 After Using Wireless Network Wizard Trip in VA Linux - Wireless Networking 2 07-18-2005 08:32 AM
Secured Login bharaniks Linux - Newbie 4 05-30-2005 12:30 AM
Configuring WPA-secured wireless network dori Slackware 1 10-07-2004 06:30 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 12:56 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration