Re: Small Office Firewall Options

Re: Small Office Firewall Options

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Re: Small Office Firewall Options Leythos 10-18-2007
Posted by Leythos on October 18, 2007, 9:53 am
If you were  Registered and logged in, you could reply and use other advanced thread options
tfrangoullides@gmail.com says...
> Hi,
>
> I'm hoping to get some advice on which firewall would be best for me.
> The Netscreen 5GT-Wireless Extended looks like it will do what I need.
> I've used Netscreeen before and was impressed but I am not aware of
> what the alternatives might be.
>
> Ideally I'd like the following
> 1 internal trusted zone
> 1 untrusted zone - the internet
> 1 DMZ - for web/email server
> 1 trusted wireless zone, full access to trusted zone
> 1 guest wireless zone, with limited access to trusted zone and the
> internet.
> The network will have up to 6Mb of traffic and I imagine only 20 or so
> concurrent sessions.

The cheapest solution is a DFL-700, but you are asking for 4 different
networks - no cheap firewall does that.

So, you want:

1 WAN
1 LAN
1 DMZ
1 Wireless LAN
1 Wireless DMZ

You could just add Access Points to the LAN and DMZ if you don't really
need separate physical networks for them.

If you want a firewall with that many ports (networks) then you need to
start with a WatchGuard X750e with Pro option - that's up to 8 networks
that you can use.

--

Leythos
- Igitur qui desiderat pacem, praeparet bellum.
- Calling an illegal alien an "undocumented worker" is like calling a
drug dealer an "unlicensed pharmacist"
spam999free@rrohio.com (remove 999 for proper email address)

Posted by on October 18, 2007, 10:44 am
If you were  Registered and logged in, you could reply and use other advanced thread options
> tfrangoulli...@gmail.com says...
>
>
>
>
>
> > Hi,
>
> > I'm hoping to get some advice on which firewall would be best for me.
> > The Netscreen 5GT-Wireless Extended looks like it will do what I need.
> > I've used Netscreeen before and was impressed but I am not aware of
> > what the alternatives might be.
>
> > Ideally I'd like the following
> > 1 internal trusted zone
> > 1 untrusted zone - the internet
> > 1 DMZ - for web/email server
> > 1 trusted wireless zone, full access to trusted zone
> > 1 guest wireless zone, with limited access to trusted zone and the
> > internet.
> > The network will have up to 6Mb of traffic and I imagine only 20 or so
> > concurrent sessions.
>
> The cheapest solution is a DFL-700, but you are asking for 4 different
> networks - no cheap firewall does that.
>
> So, you want:
>
> 1 WAN
> 1 LAN
> 1 DMZ
> 1 Wireless LAN
> 1 Wireless DMZ
>
> You could just add Access Points to the LAN and DMZ if you don't really
> need separate physical networks for them.
>
> If you want a firewall with that many ports (networks) then you need to
> start with a WatchGuard X750e with Pro option - that's up to 8 networks
> that you can use.
>
> --
>
> Leythos
> - Igitur qui desiderat pacem, praeparet bellum.
> - Calling an illegal alien an "undocumented worker" is like calling a
> drug dealer an "unlicensed pharmacist"
> spam999f...@rrohio.com (remove 999 for proper email address)- Hide quoted text
-
>
> - Show quoted text -

Thanks Leythos,

For what I'm trying to do I could add a wireless access point to the
trusted zone... but the other wireless zone isn't exactly the same as
DMZ I'd need a seperate zone for this. That's 4 zones in total.

I had a look at the D-Link documentation but could determine how many
zones it supported.

I'm not sure I'd go for a watchguard... I used a watchguard SOHO a few
years ago and was pretty disappointed.

Tas



Posted by Leythos on October 18, 2007, 3:22 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
tfrangoullides@gmail.com says...
> For what I'm trying to do I could add a wireless access point to the
> trusted zone... but the other wireless zone isn't exactly the same as
> DMZ I'd need a seperate zone for this. That's 4 zones in total.
>
> I had a look at the D-Link documentation but could determine how many
> zones it supported.

The D-Link has three physical zones.

>
> I'm not sure I'd go for a watchguard... I used a watchguard SOHO a few
> years ago and was pretty disappointed.

The SOHO is the cheapest, smallest, lowest end product there is.

You could also setup dual networks (series) in your DMZ, to isolate the
Wireless....

DMZ PORT 1 ----- NAT DEVICE 1 ---- WEB SERVERS
DMZ PORT 1 ----- NAT DEVICE 2 ---- Guest Wireless

DMZ 192.168.16.0/24
NAT DEVICE 1 192.168.17.0/24
NAT DEVICE 2 192.168.18.0/24

This keeps Guess wireless out of NAT 1 LAN, except for HTTP or what you
expose.

--

Leythos
- Igitur qui desiderat pacem, praeparet bellum.
- Calling an illegal alien an "undocumented worker" is like calling a
drug dealer an "unlicensed pharmacist"
spam999free@rrohio.com (remove 999 for proper email address)

Similar ThreadsPosted
Small office firewall/vpn/security appliance September 24, 2005, 11:55 am
We have two small office at different locations, which is best VPN solution? October 1, 2006, 4:43 pm
Options on Firewall,VPNs, IDS November 3, 2005, 3:45 pm
IPtables(time related options) July 2, 2005, 4:54 am
Where's the Options option in Zone Alarm? June 10, 2006, 6:21 pm
Good Dual wan router/gateway options? (from practical experience, lockup free etc) July 10, 2007, 10:00 am
Small firewall March 2, 2005, 7:01 pm
Looking for a Firewall for a Small Business January 7, 2007, 12:32 pm
What firewall for a small network September 4, 2007, 9:49 pm
Firewall for small business environment April 15, 2005, 2:05 pm

The site map in XML format XML site map

Contact Us | Privacy Policy