New Zealand ADSL Mailing List


RE: Linux Firewall

From: Anthony Butler <god_at_butler.dyndns.org>
Date: Sun, 4 Mar 2001 09:56:03 +1300
Message-Id: <01030410060905.05597@elivs>

On Sat, 03 Mar 2001, you wrote:

> Out of interest, would a 486DX/33 20MB 420MB HD be good enough to run a
> Linux (or BSD) firewall and router? I have one and was thinking I could use
> it for that or perhaps sell it to somebody who might have such a need?
>
> Laurence
Easily big enough. The linux router project has single floppy firewalls that
run in ram. You machine would be well over powered for this.

However if you use a small debian install. Then you can run CIPE for a virtual
private network with external machines logging into your firewall. You can put
apache on it and have a web site. If you have non-static IP then you can use
www.dyndns.org to get a domain name for free that is associated with this fire
wall.

Hence www.laurence.dyndns.org could be your
firewall/webserver/CIPE(IPsec)_router. Using apt-get you could have it
automatically update for security holes found. And then never really have to
think about it. If your paranoid (good idea) run tripwire for security as well.

This approach is not as secure as a dedicated firewall, but for a home network
it would be kick-ass. It depends on needs, time, skill (sort of see
linux.documentation project), and how much enjoyment you would get out of it.

Ants

-- 
Anthony Butler
a.butler@phys.canterbury.ac.nz
http://www.butler.co.nz/
Onward through the fog.
This message is part of the NZ ADSL mailing list.
see http://unixathome.org/adsl/ for archives, FAQ,
and various documents.
To unsubscribe: send mail to majordomo@unixathome.org
with "unsubscribe adsl" in the body of the message
Received on Sun Mar 4 10:05:25 2001

This archive was generated by hypermail 2.2.0 : Thu Nov 30 11:48:09 2006 EST