Re: Prosumer Firewall?
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


comp.security.firewalls archive

Re: Prosumer Firewall?

From: Sunny <sunny@nospam.net>
Date: Fri May 27 2005 - 07:02:11 CEST

Jrtwine wrote:
> Is there a good router/firewall that will allow extensive control over
> restricting access?
> I want to block internal access at certain windows of time of each day
> of week and within those windows perform other restrictions like
> preventing everyting except FTP transfers to take place.
>
> Also some control over blocking and sending message to specific IP or
> IP ranges. Stuff like that.
>
> I have used the Linksys WTG54Gs and the BEFSX41, but neither off the
> extent of control I mentioned.
>
> Any thoughts?
>

The devices you mention are NAT routers as opposed to firewalls, and
typically offer very limited control of outbound traffic - as you have
observed. Linksys NAT routers run Linux, and third-party distributions
are available - these can significantly enhance functionality, but are
(obviously) not supported by Linksys. Google if interested.

Alternatively, the Netscreen 5GT series offers true firewall
functionality and can seamlessly replace a Linksys NAT router - albeit
at considerably higher cost.

I'm very happy with my recent decision to replace a Linksys BEFSR41 with
an NS-5GT. The Netscreen worked out of the box, my only issue is the
time and effort required to implement additional traffic controls. Nice
problem to have :-)

http://juniper.net/products/integrated/dsheet/110034.pdf

Sunny
Received on Thu Sep 29 19:53:04 2005