What do you run; Opnsense, pfsense, Smoothwall, maybe a WAF like wazuh?

Today was update/audit firewall day. I’m running a standalone instance of pFsense on a Protectli Vault FW4B - 4 Port - Intel Quad Core - 8GB RAM - 120GB mSATA SSD with unbound, pfBlockerNG, Suricata, ntopng, and heavily filtered. I did bump the swap to 8 GB as I’ve previously noticed a few ‘out of swap’ errors under load.

Before I signed off, I ran it through a couple porn sites to see if my adblocking strategy was working. Not one intrusive ad. Sweet!

Show me what you got.

  • rumba@lemmy.zip
    link
    fedilink
    English
    arrow-up
    2
    ·
    4 hours ago

    Ubiquiti DM pro with its built in suricata. Honeypots, no remote mgmt, ACLs to minimum need, HA networks in isolation. DPI, multiple pi-holes. Phone alerts on intrusion wazuh just for node security compliance. ManageEngine for patches. NTFY alerts on console access.

    It’s not perfect