Share your knowledge at the LQ Wiki.
Go Back > Forums > Linux Forums > Linux - Security
User Name
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.


  Search this Thread
Old 08-06-2009, 08:04 AM   #1
Billy D
LQ Newbie
Registered: Aug 2009
Posts: 4

Rep: Reputation: 0
choosing an affordable firewall for my small network

firewalls with big names mean high prices .i have played with some firewalls. and i think there are more affordable solutions out there i'm now inthe rpocess of testing ideco . I am running on CentOS 5.3 x64. any suggestions?

Last edited by Billy D; 08-13-2009 at 06:51 AM.
Old 08-06-2009, 08:10 AM   #2
Senior Member
Registered: Oct 2003
Location: Northeastern Michigan, where Carhartt is a Designer Label
Distribution: Slackware 32- & 64-bit Stable
Posts: 3,541

Rep: Reputation: 1060Reputation: 1060Reputation: 1060Reputation: 1060Reputation: 1060Reputation: 1060Reputation: 1060Reputation: 1060
Have you looked at, say, a Linksys router? Lets you block common ports, keeps most of the weenies out of your pants, and costs about $85.
Old 08-06-2009, 08:44 AM   #3
Registered: Apr 2004
Distribution: slackware/FreeBSD/Vector
Posts: 291

Rep: Reputation: 52
If your not opposed to running a full sized machine as a firewall I would look into PFSense, its by far the best OpenSource firewall/router I've ever used. I'd do that or load DD-WRT on a Linksys or other compatabile router. Keep in mind that there is a known HTTP remote exploit for the older versions of DD-WRT , and a lot of the newer cisco linksys WRT models don't have enough ram to run some of the newer images. Also if you don't mind paying a little more you could also run PFSense off of an embedded PC and a CF card.
Old 08-07-2009, 11:10 AM   #4
Registered: Apr 2009
Location: Lawrence, KS
Distribution: Debian, Centos
Posts: 102
Blog Entries: 1

Rep: Reputation: 24
Pfsense is great.

There is also m0n0wall (pfsense is based on it).

There is also clarkconnect, smoothewall, and some others I can't think of at the moment.

Of course you could also roll your own with iptables. Arnos firewall script is nice as well.
Old 08-07-2009, 02:57 PM   #5
Registered: Apr 2004
Distribution: slackware/FreeBSD/Vector
Posts: 291

Rep: Reputation: 52
I've used them all ,and I agree. Per hardware specs you get more out of PFsense than anything else. I've had the same machine for a router for like two years now, I tried Untangled and it worked, but it was VERY slow on my hardware. I then tried smoothwall which was also VERY slow. I then tried Clarkconnect which was usable and I really like the built in dyndns functions, but it had way to much stuff running, It's really meant for a small office as a DC. So I went to m0n0wall, and I found it to be much faster, but still lacked the extra features I wanted, so I started using PFSense and it's a comfy mix of speed, and functionality for me. I'm sold on PFsense, it's got the ability to run a wireless AP as well and I've been using it as an additional wireless access point in my office at work and it's been up longer than my Netgear Prosafe wg302 which is just a broadcom board running embedded Linux. I've also played with vyatta, but I've not gotten it to work the way I wanted it to.

I guess the best thing is to use old desktop hardware and try to find an opensource firewall/router that works best for your situation.
Old 08-19-2009, 07:39 PM   #6
Registered: Sep 2003
Location: Ohio
Distribution: Ubuntu 12.04
Posts: 315
Blog Entries: 2

Rep: Reputation: 31
I have used PF Sense, Monowall, and Smoothwall. I seemed to like PF Sense the best.
Old 08-25-2009, 08:45 PM   #7
Registered: Aug 2009
Posts: 311

Rep: Reputation: 36
Does linksys still manufacture that WRTGL series routers that can run on a linux third party firewall like tomato??If it does then i thnk its good to get a WRTGL
Old 08-31-2009, 01:44 AM   #8
Billy D
LQ Newbie
Registered: Aug 2009
Posts: 4

Original Poster
Rep: Reputation: 0
ok so i wanted to use pfSense, but figured it is based on FreeBSD, and i wanted something linux-based. so i ended up installing ideco (the one that i was initially testing and some of the things i liked about is that it allows you to set most firewall rules under Windows and that's something my boss liked thanks for your comments and suggestions!
Old 08-31-2009, 05:39 AM   #9
Registered: Aug 2009
Posts: 311

Rep: Reputation: 36
try Astaro or clark connect both are really good.
Old 08-31-2009, 06:09 AM   #10
Senior Member
Registered: Oct 2004
Distribution: Debian Squeeze x86_64
Posts: 1,748
Blog Entries: 11

Rep: Reputation: 233Reputation: 233Reputation: 233
IPCop and endian
come to my mind. both share common source with monowall aka shorewall.
Might have mixed up mono and shorewall but all of the four mentioned share a family.
Old 09-01-2009, 09:13 PM   #11
LQ Newbie
Registered: Oct 2007
Posts: 3

Rep: Reputation: 0
untangle is also good open source network gateway, it has several modules to load in to protect internal network from outside.


firewall, linux, security

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Finally, We Have It All- Small, Fast, and Affordable LXer Syndicated Linux News 0 02-23-2009 01:10 PM
Need help choosing distro for small server zanor Linux - General 1 08-04-2006 05:48 AM
Choosing educational distro: small, no GUI ramzai Linux - Distributions 1 02-05-2006 06:53 AM
LXer: Homebuilders Financial Network Selects DataCore's Software to Make 'Going Paperless' Affordable LXer Syndicated Linux News 0 01-24-2006 11:16 AM
Help choosing the right firewall proton666 *BSD 6 12-28-2004 07:45 PM > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:03 PM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration