Re: PPPoE Firewall ?


Subject: Re: PPPoE Firewall ?
From: Jamie Hushower (hushower@alaska-geeks.com)
Date: Fri Dec 12 2003 - 14:33:49 AKST


I had asked a similar question a few weeks back and decided on Roaring
Penguin for the PPPOE with iptables for a firewall. I was really
disappointed in the processor overhead that the PPPOE required. I recall
2 to 10 percent usage (on a dual P450 w/ 256MB) when my wife and I were
surfing and my friend was accessing the server from the 'Net'. The
gateway is also an SQL server so the processor use is important. I also
had frequent problems with the connection dropping that I didn't want to
spend time trouble shooting. I ended up installing a $50 Linksys
firewall/router and continued using iptables on the Linux gateway.
Things are working well now (you can't beat the simplicity of the
Linksys router) and I have better security*. How cool is it to have a
DMZ on a home network?

-Jamie

* Incidentally, the only (direct) access that is allowed is SSH. All SQL
and Web traffic is tunneled.

W.D.McKinney wrote:

> Firewall question. Of all the IPCOP, etc., firewalls, what are users
> using for ACS Pipe/1Meg Modem connections (PPoE of course) ?
>
> I guess it's a question of PPPoE ..... Not Netgear, etc., but a home
> brew solution.
>
> Thanks
>
>
>
> ---------
> To unsubscribe, send email to <aklug-request@aklug.org>
> with 'unsubscribe' in the message body.
>
>
>

-- 
Jamie Hushower
Computer Consultant
Rent-A-Geek
223-9136
---------
To unsubscribe, send email to <aklug-request@aklug.org>
with 'unsubscribe' in the message body.



This archive was generated by hypermail 2a23 : Fri Dec 12 2003 - 14:31:13 AKST