Results 1 to 11 of 11

Thread: What Linux Firewall/Router Distribution?

  1. #1
    radix lecti dave87's Avatar
    Join Date
    Sep 2005
    Location
    England
    Posts
    12,806
    Thanks
    657
    Thanked
    931 times in 634 posts
    • dave87's system
      • Motherboard:
      • Asus
      • CPU:
      • i5 3470k under Corsair H80 WC
      • Memory:
      • 8gb DDR3
      • Storage:
      • 240gb SSD + 120gb SSD
      • Graphics card(s):
      • Asus HD7950
      • PSU:
      • XFX 600w Modular
      • Case:
      • Lian Li PC-A05FNB + Acoustipack
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • 2x Dell S2309W (1920x1080)
      • Internet:
      • BT Infinity Option 2

    What Linux Firewall/Router Distribution?

    Afternoon all,

    The idea is to replace the router I have running with a Linux based firewall router. I have a Jetway J7F2 1.5ghz Via C7 motherboard with 1gb of RAM, which will shortly have 3xGbE and 1x10/100 network ports (having just ordered the 3xGbE daughterboard), so I think I have the hardware covered.

    So what software should I be running? Jay - I think you were running pfsense, how are you finding it? Otherwise I'm open to suggestion, so any pointers gratefully received.

    Dave

  2. #2
    Seething Cauldron of Hatred TheAnimus's Avatar
    Join Date
    Aug 2005
    Posts
    17,168
    Thanks
    803
    Thanked
    2,152 times in 1,408 posts

    Re: What Linux Firewall/Router Distribution?

    http://m0n0.ch/wall/

    I hate the people that think its good security to have a firewall, and then make it run a gabillion things. I've seen people use firewall distros that have java, php and all sorts of needless complexity which of course will have security bugs in them, and reduce the purpose of having a firewall.

    So the question is, what do you want the firewall router to be doing?
    throw new ArgumentException (String, String, Exception)

  3. Received thanks from:

    dave87 (20-01-2013)

  4. #3
    radix lecti dave87's Avatar
    Join Date
    Sep 2005
    Location
    England
    Posts
    12,806
    Thanks
    657
    Thanked
    931 times in 634 posts
    • dave87's system
      • Motherboard:
      • Asus
      • CPU:
      • i5 3470k under Corsair H80 WC
      • Memory:
      • 8gb DDR3
      • Storage:
      • 240gb SSD + 120gb SSD
      • Graphics card(s):
      • Asus HD7950
      • PSU:
      • XFX 600w Modular
      • Case:
      • Lian Li PC-A05FNB + Acoustipack
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • 2x Dell S2309W (1920x1080)
      • Internet:
      • BT Infinity Option 2

    Re: What Linux Firewall/Router Distribution?

    Firewall & NAT basically. May eventually add VLANs to segregate the network, but not currently in the plan.

    I have a WHS and an ESXI host which I can play with other things if required.

  5. #4
    Senior Member
    Join Date
    Feb 2008
    Posts
    925
    Thanks
    4
    Thanked
    161 times in 148 posts
    • smargh's system
      • Motherboard:
      • Gigabyte GA-EP45-UD3P
      • CPU:
      • Xeon E5450 with 775-to-771 Mod
      • Memory:
      • 16GB Crucial
      • Storage:
      • Intel X25-M G2 80GB/Adaptec 3405 4x 2TB Ultrastar RAID1 / 1x 6TB Hitachi He6 / Dying 2TB Samsung
      • Graphics card(s):
      • GTX 750 Ti
      • PSU:
      • Seasonic X-560
      • Case:
      • Lian-Li PC-A71
      • Operating System:
      • Windows 7 Ultimate 64bit
      • Monitor(s):
      • BenQ G2400WD
      • Internet:
      • Really Crap ADSL2 <3Mbit

    Re: What Linux Firewall/Router Distribution?

    I've been using pfsense on an Alix 2D3 for a few years. Works fine - never falls over. I previously used m0n0 for a few years, which (IMO) did better packet shaping and I might switch back to that at some point.

    I'm a big fan of one-device-for-one-purpose, so as per TheAnimus, what do you want it to do?

    Edit: just saw above post. The hardware you have is probably overkill for a firewall & might waste electricity unnecessarily.

  6. Received thanks from:

    dave87 (20-01-2013)

  7. #5
    radix lecti dave87's Avatar
    Join Date
    Sep 2005
    Location
    England
    Posts
    12,806
    Thanks
    657
    Thanked
    931 times in 634 posts
    • dave87's system
      • Motherboard:
      • Asus
      • CPU:
      • i5 3470k under Corsair H80 WC
      • Memory:
      • 8gb DDR3
      • Storage:
      • 240gb SSD + 120gb SSD
      • Graphics card(s):
      • Asus HD7950
      • PSU:
      • XFX 600w Modular
      • Case:
      • Lian Li PC-A05FNB + Acoustipack
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • 2x Dell S2309W (1920x1080)
      • Internet:
      • BT Infinity Option 2

    Re: What Linux Firewall/Router Distribution?

    It's the 25w version I've got, so hopefully shouldn't be too bad (left over from an old self built NAS that got replaced by a WHS). That said I've got 80/20 BT Infinity which runs at 75/16, so I wanted to make sure there was enough processing power to deal with that running at full speed (as required).

  8. #6
    Seething Cauldron of Hatred TheAnimus's Avatar
    Join Date
    Aug 2005
    Posts
    17,168
    Thanks
    803
    Thanked
    2,152 times in 1,408 posts

    Re: What Linux Firewall/Router Distribution?

    In that case m0n0wall is definately up your street, small secure and simple.
    throw new ArgumentException (String, String, Exception)

  9. #7
    radix lecti dave87's Avatar
    Join Date
    Sep 2005
    Location
    England
    Posts
    12,806
    Thanks
    657
    Thanked
    931 times in 634 posts
    • dave87's system
      • Motherboard:
      • Asus
      • CPU:
      • i5 3470k under Corsair H80 WC
      • Memory:
      • 8gb DDR3
      • Storage:
      • 240gb SSD + 120gb SSD
      • Graphics card(s):
      • Asus HD7950
      • PSU:
      • XFX 600w Modular
      • Case:
      • Lian Li PC-A05FNB + Acoustipack
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • 2x Dell S2309W (1920x1080)
      • Internet:
      • BT Infinity Option 2

    Re: What Linux Firewall/Router Distribution?

    Perfect, looks like m0n0wall it is then!

  10. #8
    Senior Member
    Join Date
    Feb 2008
    Posts
    925
    Thanks
    4
    Thanked
    161 times in 148 posts
    • smargh's system
      • Motherboard:
      • Gigabyte GA-EP45-UD3P
      • CPU:
      • Xeon E5450 with 775-to-771 Mod
      • Memory:
      • 16GB Crucial
      • Storage:
      • Intel X25-M G2 80GB/Adaptec 3405 4x 2TB Ultrastar RAID1 / 1x 6TB Hitachi He6 / Dying 2TB Samsung
      • Graphics card(s):
      • GTX 750 Ti
      • PSU:
      • Seasonic X-560
      • Case:
      • Lian-Li PC-A71
      • Operating System:
      • Windows 7 Ultimate 64bit
      • Monitor(s):
      • BenQ G2400WD
      • Internet:
      • Really Crap ADSL2 <3Mbit

    Re: What Linux Firewall/Router Distribution?

    By my calculations*, you would save around £22.20 per year if you used an Alix instead of the Jetway, assuming that it actually pulls 25 watts from the wall. It would take 6.7 years to use the savings in electricity, or less if you also sold the Jetway components. Your Jetway probably pulls slightly more than 25W though.



    *often wrong

  11. #9
    Registered+
    Join Date
    Feb 2013
    Posts
    26
    Thanks
    0
    Thanked
    2 times in 2 posts

    Re: What Linux Firewall/Router Distribution?

    Why limit yourself to Linux? OpenBSD is the perfect choice for a firewall.

  12. #10
    Senior Member kopite's Avatar
    Join Date
    Sep 2006
    Location
    Liverpool
    Posts
    3,499
    Thanks
    81
    Thanked
    158 times in 127 posts
    • kopite's system
      • Motherboard:
      • Asus Maximus IV Gene-Z
      • CPU:
      • Intel Core i5 2500K
      • Memory:
      • 8GB DDR3 1600 MHz Corsair Memory Vengeance Black
      • Storage:
      • 128GB Crucial m4 for main drive. 3.5 TB of storage space over western Digital Drives
      • Graphics card(s):
      • Gigabyte NVIDIA GTX 970 G1 Gaming Edition
      • PSU:
      • 750W ANTEC TRUEPOWER
      • Case:
      • Silverstone Fortress FT03
      • Operating System:
      • Windows 10
      • Monitor(s):
      • 1 x 27 inch dell Monitor 1 x 20 inch Dell monitor
      • Internet:
      • Virgin media 150MB

    Re: What Linux Firewall/Router Distribution?

    have you looked at vyatta?

    I`ve had a bit of a mess with it in work and it seems to be really powerful.

    Its router as well as firewall but I like it

  13. #11
    Senior Member watercooled's Avatar
    Join Date
    Jan 2009
    Posts
    11,478
    Thanks
    1,541
    Thanked
    1,029 times in 872 posts

    Re: What Linux Firewall/Router Distribution?

    I also really like m0n0wall, simple, stable, not full of bloat or nonsense like uPnP (check the recent security panic) and will run well on pretty much anything. I also have an ALIX board, a 2D13, and CPU usage in % seems to scale close to throughput in Mbps i.e. loading VM's 60Mb download seems to take the CPU to around 60%. This is an AMD Geode LX800 CPU @ 500MHz - your VIA system should have no trouble with Inifnity. CPU load can obviously increase depending on number of rules etc, but unless you have hundreds of custom rules, it shouldn't make much of a difference.

    I don't recall ever having to reboot the system through its own fault, and if I hadn't unplugged it for various reasons, or installed new versions, uptime would probably be in the years.

    @sha-1 m0n0wall and pfSense are based on FreeBSD.

    Edit: Something worth investigating, I'm not sure if m0n0wall supports PowerD (CPU frequency scaling); I know pfSense does, and the option isn't there on m0n0 for me, but some CPUs don't support it so that could explain it. However, if the VIA CPU does support it, and if there's a worthwhile drop in idle power consumption, it may be worth trying to get it working.
    Last edited by watercooled; 06-02-2013 at 07:21 PM.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •