Results 1 to 6 of 6

Thread: Best firewall to prevent IP spoofing attack? IDP

  1. #1
    Senior Member
    Join Date
    Jan 2014
    Location
    Newcastle
    Posts
    220
    Thanks
    56
    Thanked
    8 times in 8 posts

    Best firewall to prevent IP spoofing attack? IDP

    I am working with a small company (Less than 10 computers)
    They need a firewall, a better firewall than what they have. They specifically need to stop IP spoofing attacks. This comes down to packet filtering and IDP.

    I'm thinking the Juniper SRX110 would be a good match

    They basically have a ADSL Connection > Router > Internal network at the moment and I'd slot the firewall into the space between the Router and the internal network.
    All the devices on the back of the current router would go into the firewall

    Just wondering if anyone would suggest another device? perhaps cheaper? as the SRX110 is a big cost for the small company.
    Last edited by MrComputerSaint; 06-04-2017 at 11:58 AM. Reason: title

  2. #2
    SUMMONER
    Guest

    Re: Best firewall to prevent IP spoofing attack? IDP

    I don't have any hands on experience in dealing with such attacks, however the Draytek routers that I install with clients all have a "block LAND" option in the firewall settings, which is supposed to block IP spoofing from the WAN side.

    I am not sure if that covers all forms of IP spoofing or even how well/badly a simple Draytek SOHO router will cope if it does come under attack, but at < £40 delivered for a used Draytek Vigor 2830 it might be worth a look at.

  3. Received thanks from:

    MrComputerSaint (07-04-2017)

  4. #3
    Senior Member
    Join Date
    Jan 2014
    Location
    Newcastle
    Posts
    220
    Thanks
    56
    Thanked
    8 times in 8 posts

    Re: Best firewall to prevent IP spoofing attack? IDP

    Quote Originally Posted by SUMMONER View Post
    I don't have any hands on experience in dealing with such attacks, however the Draytek routers that I install with clients all have a "block LAND" option in the firewall settings, which is supposed to block IP spoofing from the WAN side.

    I am not sure if that covers all forms of IP spoofing or even how well/badly a simple Draytek SOHO router will cope if it does come under attack, but at < £40 delivered for a used Draytek Vigor 2830 it might be worth a look at.
    Thanks. I'll take a look

  5. #4
    Splash
    Guest

    Re: Best firewall to prevent IP spoofing attack? IDP

    Those SRX boxes are a bit on the pricy side for most SMBs. Have you looked at the Sophos XG firewalls? You can get a free version (I run one for my homelab on an old Microserver, but it could equally run in a VM) - that might suffice.

  6. Received thanks from:

    MrComputerSaint (10-04-2017)

  7. #5
    Senior Member
    Join Date
    Jan 2014
    Location
    Newcastle
    Posts
    220
    Thanks
    56
    Thanked
    8 times in 8 posts

    Re: Best firewall to prevent IP spoofing attack? IDP

    Think I'm going to go with a Zyxel USG40W

  8. #6
    Anthropomorphic Personification shaithis's Avatar
    Join Date
    Apr 2004
    Location
    The Last Aerie
    Posts
    10,857
    Thanks
    645
    Thanked
    872 times in 736 posts
    • shaithis's system
      • Motherboard:
      • Asus P8Z77 WS
      • CPU:
      • i7 3770k @ 4.5GHz
      • Memory:
      • 32GB HyperX 1866
      • Storage:
      • Lots!
      • Graphics card(s):
      • Sapphire Fury X
      • PSU:
      • Corsair HX850
      • Case:
      • Corsair 600T (White)
      • Operating System:
      • Windows 10 x64
      • Monitor(s):
      • 2 x Dell 3007
      • Internet:
      • Zen 80Mb Fibre

    Re: Best firewall to prevent IP spoofing attack? IDP

    After using a few bits of Zyxel kit, I wouldn't touch them with a bargepole to be honest.

    Hell, they seem to not even know the difference between bridge, half bridge and NAT on some of the devices I have had the misfortune of trying to use.
    Main PC: Asus Rampage IV Extreme / 3960X@4.5GHz / Antec H1200 Pro / 32GB DDR3-1866 Quad Channel / Sapphire Fury X / Areca 1680 / 850W EVGA SuperNOVA Gold 2 / Corsair 600T / 2x Dell 3007 / 4 x 250GB SSD + 2 x 80GB SSD / 4 x 1TB HDD (RAID 10) / Windows 10 Pro, Yosemite & Ubuntu
    HTPC: AsRock Z77 Pro 4 / 3770K@4.2GHz / 24GB / GTX 1080 / SST-LC20 / Antec TP-550 / Hisense 65k5510 4K TV / HTC Vive / 2 x 240GB SSD + 12TB HDD Space / Race Seat / Logitech G29 / Win 10 Pro
    HTPC2: Asus AM1I-A / 5150 / 4GB / Corsair Force 3 240GB / Silverstone SST-ML05B + ST30SF / Samsung UE60H6200 TV / Windows 10 Pro
    Spare/Loaner: Gigabyte EX58-UD5 / i950 / 12GB / HD7870 / Corsair 300R / Silverpower 700W modular
    NAS 1: HP N40L / 12GB ECC RAM / 2 x 3TB Arrays || NAS 2: Dell PowerEdge T110 II / 24GB ECC RAM / 2 x 3TB Hybrid arrays || Network:Buffalo WZR-1166DHP w/DD-WRT + HP ProCurve 1800-24G
    Laptop: Dell Precision 5510 Printer: HP CP1515n || Phone: Huawei P30 || Other: Samsung Galaxy Tab 4 Pro 10.1 CM14 / Playstation 4 + G29 + 2TB Hybrid drive

  9. Received thanks from:

    MrComputerSaint (10-04-2017)

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •