[wellylug] SFF pc for a firewall

Peter Lambrechtsen plambrechtsen at gmail.com
Fri Nov 13 06:51:55 NZDT 2009


You can run openvpn and ctorrent on a wl520.. Or you can do what I  
have done for VPN is to get a oem router off trademe. I just got a  
netscreen 5xt firewall for $10 which is crazy considering they were 1k  
about 4 years ago, plus I picked up a cisco 1721 a few weeks ago which  
supports VPN dyndns vlans and full firewall for $50. For me I prefer  
the cisco as my work laptop which must run window (Corp requirement)  
has cisco VPN to get into the office. So I now have two profiles, one  
for work one for home and nomachine is just sweet.

But that's not using a good Linux solution but the client side was  
what really works for me, and uses a lot less power than a desktop. I  
vpn to my cisco remotely, Ssh to my openwrt router, send a wol packet  
to wake up my desktop and I am away.

On 12/11/2009, at 10:28 PM, William Hamilton  
<william.hamilton at gmail.com> wrote:

> Thanks Peter..  I shoudl add..   currently setup as a VPN server too  
> and a number of security tools...  grunt may be required more than  
> teh ASUS or WRT beasts may provide.    I liek the addition of USB  
> port on the devices these days.. my old WRT-54G at home should get  
> an upgrade one day but it just keeps trucking along but uses dd-WRT  
> rather tha OpenWRT
>
> cheers
>
> W
>
> 2009/11/12 Peter Lambrechtsen <plambrechtsen at gmail.com>
> I would just go for a router that supports OpenWRT.
>
> The Asus WL-520gU is pretty good. http://www.ascent.co.nz/productspecification.aspx?ItemID=361718 
>   Ascent are out of stock, but there will be plenty of others on  
> price spy who should be able to find one.
>
> Cheap as chips it's the same hardware as the linksys WRT54GL, but it  
> has a USB Port.
>
> I sorted one out for a friend months ago, and havn't heard anything  
> since (which is always a good sign).
>
> Unless you want to do IDS/SPI... then you might need something with  
> more grunt.
>
> On Thu, Nov 12, 2009 at 9:24 PM, William Hamilton <william.hamilton at gmail.com 
> > wrote:
> Since people here know verything..  :)
>
> I have an old SFF PC running as a Linux based  firewall and looking  
> at replacement options.  Network config back to a standard EXT/INT/ 
> DMZ but may require additional one or two zones again later.  I have  
> currently 4port card and internal NIC.  Similar setup would be grand.
>
> Embedded devices or SFF PC again??
>
> W
>
>
>
> --
> Wellington Linux Users Group Mailing List: wellylug at lists.wellylug.org.nz
> To Leave:  http://lists.wellylug.org.nz/mailman/listinfo/wellylug
>
>
>
>
> --
> Wellington Linux Users Group Mailing List: wellylug at lists.wellylug.org.nz
> To Leave:  http://lists.wellylug.org.nz/mailman/listinfo/wellylug
>
>
>
> -- 
> Wellington Linux Users Group Mailing List: wellylug at lists.wellylug.org.nz
> To Leave:  http://lists.wellylug.org.nz/mailman/listinfo/wellylug
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.wellylug.org.nz/pipermail/wellylug/attachments/20091113/be053db0/attachment.htm 


More information about the wellylug mailing list