Help - Search - Members - Calendar
Full Version: Software Firewall on Busy Window Server -need Recommendation
The Planet Forums > Security > Firewalls
mamin
Hi,
I am planning to Get Server Matrix WINDOWS 2003 Server for my own website (NOT for hosting business). We have around 1000 concurrent user in busy time. Since SM hardware firewall is too expensive I am thinking about getting software firewall.

Can you please provide me good recommended Software firewall software name.

I looked at OUTPOST firewall but I am concern about oveloading the server for CPU Usage.

What small hosting company use ?. What is commonly used software firewall on Windows Environment ?

Thanks
adamuk
Routing and remote access does a decent job
cprompt
QUOTE (adamuk)
Routing and remote access does a decent job

Seconded! Free, easy and does exactly what it says on the tin icon_mrgreen.gif
mamin
Does that mean most small hosting company do not get expensive hardware firewall and they rely on IPSEC and RRAS security.


I was told that it does not protect some of the component e.g. NonIP, Application etc

Can I sleep in the night if I have proper RRAS security configured ?
parisdns
QUOTE (mamin)
Does that mean most small hosting company do not get expensive hardware firewall and they rely on IPSEC and RRAS security.


I was told that it does not protect some of the component e.g. NonIP, Application etc

Can I sleep in the night if I have proper RRAS security configured ?


I guess yes and yes !... icon_smile.gif
my_forum_id
QUOTE (mamin)
Does that mean most small hosting company do not get expensive hardware firewall and they rely on IPSEC and RRAS security.


I was told that it does not protect some of the component e.g. NonIP, Application etc

Can I sleep in the night if I have proper RRAS security configured ?


Definitelty.

RRAS will block all incoming ports other than those you allow which is all you should need on a web server.
eddy2099
Well, I guess the other thing might be to use the Ozone VLAN ACL Filter offering. They are going for $20 per VLAN per month. Might be something worth exploring.
Lunch[box]
RRAS does a great job as a firewall. According to Microsoft's TechNet, they will be releasing a Management & Admin Pack for RRAS sometime soon. It appears to have much better logging, easier configuration for multiple ports, etc.

If they do get it released I believe it will make RRAS very powerfull.
cprompt
QUOTE (Lunch[box)
]...much better logging...

Any logging would be nice icon_sad.gif
Lunch[box]
QUOTE (cprompt)
QUOTE (Lunch[box)
]...much better logging...

Any logging would be nice icon_sad.gif


Right you are!
my_forum_id
If memorey serves me right (can't be bothered to log into a server) there IS already logging in RRAS if you enable it.
cprompt
QUOTE (my_forum_id)
If memorey serves me right (can't be bothered to log into a server) there IS already logging in RRAS if you enable it.

If only that were true. RRAS is a suite of applications, the basic firewall being just a small part of it. Yes, there is logging in RRAS, but there is no logging in the basic firewall part of it.
patrick24601
Is Routing and Remote access enabled by default?

Is this available on Windows 2000 also?

Can you recommend some good links to read?
Lunch[box]
RRAS is available on Windows 2000; however the Basic Firewall setup isn't. You can still use it for VPN's and such, but the Basic Firewall features didn't come into play until Server 2003.

RRAS has a service running, but it's not configured. You have to manually set it up to start it.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.