CNCzone.com-The Largest Machinist Community on the net!



Home Page Mark Forums Read Today's Posts My Replies Classifieds Reviews Photo Gallery Web Links Share Files Advertise With Us Ad List
Go Back   CNCzone.com-The Largest Machinist Community on the net! > Electronics > Computers and Networking


Computers and Networking Discuss computer and Networking related questions here!


Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #13  
Old 10-07-2004, 11:10 AM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Originally Posted by ynneb
I just wonder what to block though. Its hard to know what is a legit access to the internet and what is spyware. I have tried zone alarm in the past and have had all sorts of difficulties with my network afterwards. Are other firewalls more network friendly?
Most hardware firewalls have a hard time distinguishing what is allowed outbound and what is not allowed out. Spyware can be very sneaky and use the same outbound ports as say http traffic. The main purpose for a firewall is to protect a private network from the internet, not from itself.

Zone alarm can be a huge headache just due to the fact that it is an application based firewall. It allows inexperienced end users to control it, bypass it and break it.

Hardware firewall are MUCH more friendly to all parties involved.
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

  #14  
Old 10-07-2004, 11:22 AM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Originally Posted by Ferenczyg
Best bet and better performance vs. money is linux+iptables. You can deploy more than one security subnet (i.e external, DMZ-service, Internal) any as NIC cards you have. Any equipment above PII-500 will be OK if you do not install X, you do not need lot of HD except if you want lot of space for logs and 256-512 MB of ram will be ok. You can -if you dare- deploy IDS (snort) or proxy (squid) in the machine if you need it too.

If you want a pure appliance I'm with mvaughn for watchguard, prices are below 400$ for the entry products:
http://www.securehq.com/vendors.wml&...21&vendorid=53
I will agree with Ferenczyg about everything except using a common linux distribution for a stand-alone firewall. There are distributions specifically customized to be a firewall and only a firewall, with a little ids, dns, dhcp, and proxy caching on the side it you want.

I can't say enough nice things about the smoothwall firewall distro. http://www.smoothwall.org I've been running it on a machine in my home for the last five to six years and It's been rock solid. It uses either ipchains or iptables, I'm not posititive at the moment.

The best thing is that it has a web based interface that you manage it with. It saves a lot of resources by not running X or any other nonsense services like sendmail that you would get with a modern distro.
Attached Thumbnails
Click image for larger version

Name:	2.4.1.png‎
Views:	94
Size:	50.5 KB
ID:	3580   Click image for larger version

Name:	2.4.2.png‎
Views:	105
Size:	81.4 KB
ID:	3581   Click image for larger version

Name:	2.6.1.png‎
Views:	80
Size:	44.3 KB
ID:	3582  
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

  #15  
Old 10-07-2004, 11:24 AM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Originally Posted by Ferenczyg
Zone Labs and 350K desktops? Umm.. I think both of us are working for the same company

350,000 desktops with ZoneAlarm..... I'd know I had died and gone to hell if that were me.
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

Sponsored Links
  #16   Ban this user!
Old 10-07-2004, 12:38 PM
 
Join Date: Apr 2003
Location: UK
Posts: 1,080
kong is on a distinguished road

Back in my Linux days I used to swear by smoothwall, so I guess I will just second that! never used the stand alone distro though, sounds good Another linux freebie that springs to mind is IP-cop, can't remember it too well, but may be worth a look - http://www.ipcop.org/
__________________
(Note: The opinions expressed in this post are my own and are not necessarily those of CNCzone and its management)
Reply With Quote

  #17  
Old 10-07-2004, 12:41 PM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Originally Posted by kong
Back in my Linux days I used to swear by smoothwall, so I guess I will just second that! never used the stand alone distro though, sounds good Another linux freebie that springs to mind is IP-cop, can't remember it too well, but may be worth a look - http://www.ipcop.org/

IPcop is good too. After all, it's only a fork of an older version of smoothwall. They haven't released an updated version in a while... although I hear there is one coming.
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

  #18  
Old 10-07-2004, 12:43 PM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Actually, I take that back. It looks as if IPcop released a new version this month.
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

  #19  
Old 10-07-2004, 12:47 PM
mvaughn's Avatar
Moderator
 
Join Date: Jan 2004
Location: United States
Age: 33
Posts: 383
mvaughn is on a distinguished road

Hey Kong,

Are you still making and selling those fan grills with your CNC router? You the reason I found and got into this site. I loved your CNC thread on the bit-tech site.
__________________
Mark
--------------------------
Check Out My Build-Log(s):

http://cnczone.com/forums/showthread.php?t=4716
CNC Router Version 1 [====================] 100%

http://cnczone.com/forums/showthread.php?t=39294
CNC Router Version 2 [=|-----------------------] 5%
Reply With Quote

  #20   Ban this user!
Old 10-07-2004, 01:25 PM
 
Join Date: Apr 2003
Location: UK
Posts: 1,080
kong is on a distinguished road

Unbelievable, I have infected hundreds of people right across the world! Nah, no more fan grills, too much effort for too little money. I still get people emailing me requests though!
__________________
(Note: The opinions expressed in this post are my own and are not necessarily those of CNCzone and its management)
Reply With Quote

Sponsored Links
  #21  
Old 10-08-2004, 03:18 AM
Community Moderator
 
Join Date: Mar 2004
Location: Sweden
Posts: 1,084
svenakela is on a distinguished road

Smoothwall has for sure made a progress, looks really nice now!

--Sven
Reply With Quote

  #22   Ban this user!
Old 10-08-2004, 06:29 AM
 
Join Date: Mar 2004
Location: Spain
Posts: 190
Ferenczyg is on a distinguished road

Originally Posted by mvaughn
350,000 desktops with ZoneAlarm..... I'd know I had died and gone to hell if that were me.

Well, Zone Labs changed a bit from where purchased by checkpoint. And the use of a "pure standalone user fw" in a mandatory basis is a good practice. Of course this must not be the only fw in the chain between the end users and the non trusted network.
Reply With Quote

Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Extremely basic machining question. touser General Metalwork Discussion 9 06-19-2005 12:51 AM
Hey guys, how's it going? Just a quick question with the machine stopping. Darc CamSoft Products 8 12-21-2004 03:22 PM
Just a question about plunge milling. Machine1 Hard and High Speed Machining 4 01-28-2004 08:36 PM
Industry question justCNCit DIY-CNC Router Table Machines 1 11-19-2003 09:56 PM




All times are GMT -5. The time now is 10:05 AM.





Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
Content Relevant URLs by vBSEO
Template-Modifications by TMS

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361