<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: Tips for an (advanced) home firewall/router</title>
	<link>http://ask.metafilter.com/44339/Tips-for-an-advanced-home-firewallrouter/</link>
	<description>Comments on Ask MetaFilter post Tips for an (advanced) home firewall/router</description>
	<pubDate>Mon, 14 Aug 2006 05:53:26 -0800</pubDate>
	<lastBuildDate>Mon, 14 Aug 2006 05:53:26 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Question: Tips for an (advanced) home firewall/router</title>
		<link>http://ask.metafilter.com/44339/Tips-for-an-advanced-home-firewallrouter</link>	
		<description>I have a setup for my SOHO firewall in mind. Help me perfect it. &lt;br /&gt;&lt;br /&gt; I&apos;m moving to another city, and there my new office will be at home for the forseeable future. I want the firewall/router have the following features:&lt;br&gt;
&lt;br&gt;
- Connect wired SOHO network, wireless entertainment network, DMZ for client FTP, and the internet.&lt;br&gt;
- Allow access to wired network from both the internet and WIFI only through VPN&lt;br&gt;
- Intrusion detection&lt;br&gt;
- Must be (almost) totally silent&lt;br&gt;
&lt;br&gt;
What I have in mind is a &lt;a href=&quot;http://www.hushtechnologies.net/&quot;&gt;hush B1&lt;/a&gt; (sorry, no direct link because of frames) with 3 ethernet connectors and either the personal edition of the &lt;a href=&quot;http://astaro.com/products&quot;&gt;Astaro firewall&lt;/a&gt; or &lt;a href=&quot;http://www.clarkconnect.com/&quot;&gt;ClarkConnect&lt;/a&gt;.&lt;br&gt;
&lt;br&gt;
Now to the questions:&lt;br&gt;
&lt;br&gt;
- While the B1 seems to be quality hardware, and I&apos;m ready to spend the money, are there cheaper fanless solutions with enough CPU power to run a packet analyzer and IPSec, with enough ethernet connectors, and in the same size category?&lt;br&gt;
&lt;br&gt;
- Are there other/better software solutions than the two mentioned? Experiences?&lt;br&gt;
&lt;br&gt;
- Any hints for improvement are welcome :)&lt;br&gt;
&lt;br&gt;
Thanks!</description>
		<guid isPermaLink="false">post:ask.metafilter.com,2006:site.44339</guid>
		<pubDate>Mon, 14 Aug 2006 01:58:09 -0800</pubDate>
		<dc:creator>uncle harold</dc:creator>
		
			<category>firewall</category>
		
			<category>router</category>
		
	</item> <item>
		<title>By: Pinback</title>
		<link>http://ask.metafilter.com/44339/Tips-for-an-advanced-home-firewallrouter#679872</link>	
		<description>I&apos;ve had a little experience with the &lt;a href=&quot;http://www.yawarra.com.au/hw-wrap.php&quot;&gt;WRAP&lt;/a&gt; (Wireless Router Application Platform) solutions from &lt;a href=&quot;http://www.pcengines.ch/&quot;&gt;PC-Engines&lt;/a&gt;. Nice hardware, wireless-friendly, boots from CF card, silent, and I&apos;ve run both m0n0wall &amp;amp; custom OpenBSD firewalls on them.&lt;br&gt;
&lt;br&gt;
If you&apos;re experienced enough to build your own custom firewall configuration from a bare Linux or OpenBSD install (and it sounds like you are), I can thoroughly recommend them. I&apos;ve got a couple installed around the place acting as combination firewalls / VPN endpoints / 802.11g access points, and they&apos;ve been no trouble at all.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.44339-679872</guid>
		<pubDate>Mon, 14 Aug 2006 05:53:26 -0800</pubDate>
		<dc:creator>Pinback</dc:creator>
	</item><item>
		<title>By: uncle harold</title>
		<link>http://ask.metafilter.com/44339/Tips-for-an-advanced-home-firewallrouter#680286</link>	
		<description>Thanks, WRAP looks very interesting.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.44339-680286</guid>
		<pubDate>Mon, 14 Aug 2006 10:25:16 -0800</pubDate>
		<dc:creator>uncle harold</dc:creator>
	</item><item>
		<title>By: drstein</title>
		<link>http://ask.metafilter.com/44339/Tips-for-an-advanced-home-firewallrouter#680488</link>	
		<description>What about the &lt;a href=&quot;http://www.soekris.com/&quot;&gt;soekris engineering&lt;/a&gt; boxes? I see them set up as SOHO firewalls quite often. The Linux &amp;amp; *BSD types love the little things.&lt;br&gt;
&lt;br&gt;
It all depends on how much time and effort you want to put into it. Personally, I got sick of homebrew computer crap at home, so I bought a used &lt;a href=&quot;http://www.juniper.net/&quot;&gt;Netscreen &lt;/a&gt; firewall instead. To be specific, I have the Netscreen 5XP. the newer products, like the Netscreen 5GT, have 5 ethernet interfaces that allow you to segment traffic &amp;amp; firewall rules six ways from Sunday. They can do everything that you&apos;re asking and a whole lot more. &lt;br&gt;
&lt;br&gt;
In the long run, it all boils down to how much money you feel like spending.</description>
		<guid isPermaLink="false">comment:ask.metafilter.com,2006:site.44339-680488</guid>
		<pubDate>Mon, 14 Aug 2006 12:16:25 -0800</pubDate>
		<dc:creator>drstein</dc:creator>
	</item>
	</channel>
</rss>
