D&C GLug - Home Page

[ Date Index ] [ Thread Index ] [ <= Previous by date / thread ] [ Next by date / thread => ]

Re: [LUG] IPCOP & BIND

 

Quoting Peter Walker <peter.walker@xxxxxxxxxxxxxxx>:

Gary wrote:

Yes I fully agree that they should move the DNS service elsewhere - in my
opinion to a pc sat behind the firewall pc (IPCOP if they must) with the
same drop in IP config, but with port 53 (DNS) forwarded to the internal DNS
machine ... I've said this to them until I'm blue in the face!!! But exercising political muscle when you have none (even though you may have
technical muscle); it's nigh on impossible to do! If management want, they
normally get and don't care about any details outside THEIR outline & spec.


Gary,

If you have to have a single box solution take a look at SME Server (contribs.org). I haven't used it for a couple of releases but it is designed to do everything, including firewall and DNS. I've never used the firewall component so I don't know how sophisticated it is.

Cheers,

Pete


I use SME Server (version 7.0 RC1) and it is a pretty good solution and works well. It's now based on CentOS Linux 4 (previous versions were based on RedHat). I've been using it for about 2 years without any problems. AFAIK the firewall component is pretty good. It has been a while since I used it for the firewall though as I havea firewall built into my ADSL Router.

It can be used with dialup/isdn, with some USB ADSL modems (I think the Speedtouch ones work especially well) and with cable broadband with a couple of network cards in it. I haven't tried setting up a DMZ on it but I'm sure it would be possible.

The SME Server also provides file sharing, e-mail, content blocking, spam blocking, anti-virus scanning.

Rob




-
The Mailing List for the Devon & Cornwall LUG
Mail majordomo@xxxxxxxxxxxxx with "unsubscribe list" in the
message body to unsubscribe. FAQ: www.dcglug.org.uk/linux_adm/list-faq.html