Visitor counter, Heat Map, Conversion tracking, Search Rank

How to secure your intra-network from external attacks when connected to Internet

In this article I would talk about securing a intra-network from external attacks. The intra-network could be a group of PCs connected to a switch and the switch in turn connected to an Internet Broadband modem. Now we could implement the required security in two ways. First secure all the PCs by loading desktop firewalls in them. Loading those PCs with anti virus software with latest updates. Further more , update the OS with all the required patches. However, we can not do much about the end users. Many a times we are faced with users who have got very little knowledge about computer networks in general. These users invariable would load softwares on to their machines which would comprise their security . One solution, could be that one takes away the administration rights from them and let them use the machine with user rights. Therefore, they would not be able to cause any damage to their system. However, this setup would require configuring each and every machine on the system. Further more, no users would like to be dictated how they should use their machine, after all they own it.

 

So whats the way out. Think of securing the perimeter. This way we need not secure each individual PC and the users are at liberty to do whatever they feel like with their machine, as they are the administrators themselves. As we have got only one gateway to the intra-network in terms of the Ethernet connectivity coming from the Broadband user, to engineer the above setup we could pass it through a Network Firewall. The resulting setup now would be , Ethernet data coming from the broadband router goes to the network firewall's WAN port, the intra-network gets connected to the LAN port of the Network firewall.

Fine, now that we have thought of placing a network firewall, lets see what all is available in the market. Well through money and you can pick up the best of Juniper and alike Firewall. But do we really need all that high end Network Firewall. The answer is , one could easily do a much better job with a Linux based Network Firewall. Did some one say Linux. And the first response one gets is anything but Linux or I have never used Linux etc. This article I have specially target towards those network administrators who have had no experience about Linux, what so ever. We would build a Network firewall and much more in a matter of time from scratch.

To start with get hold of an old PC having two LAN cards and atleast 256MB RAM, 2GB Hard-disk space. Keyboard, mouse and Monitor would be required only during the installation process.

 

Download the latest version of pfsense (Network Firewall ) iso image from https://pfsense.com/download/mirror.php?section=downloads  . Create a installation disk from the image file by burning it on to it using any CD/DVD writing software.

Comments   

0 #50 viagra from canada 2017-01-03 18:00
Good day! This post could not be written any better! Reading this post reminds me of my previous room mate!
He always kept chatting about this. I will forward this page to him.
Pretty sure he will have a good read. Thanks for sharing!


My webpage; viagra from canada: https://canadawwwrx.com/
Quote
0 #49 jeux d’enfant 2016-11-30 13:17
Greetings! Very helpful advice in ths particular article!It is the little changes thaat make the
biggest changes. Thanks a lot for sharing!
Quote
0 #48 kala jadoo 2016-11-01 00:47
Do you mind if I quote a few of your posts as long as I provide credit and sources back to your website?
My blog is in the exact same niche as yours
and my visitors would genuinely benefit from a lot of the information you provide here.
Please let me know if this alright with you. Thanks a lot!
Quote
0 #47 Goji life 2016-10-15 13:30
My web-site ... Goji life: https://ser-saludable.net/
Quote
0 #46 hotels near me bronx 2016-10-04 09:09
Please let me know if you're looking for a author for your
site. You have some really good articles and I feel I would be a good asset.
If you ever want to take some of the load off, I'd love to write some content for your blog in exchange for
a link back to mine. Please blast hotels near me bronx: https://hotelsnearme.club/ an email if interested.
Regards!
Quote
0 #45 ace 2016-09-22 23:03
U.S. Citizenship and Immigration Services (USCIS ) - Contact USCIS in case
you are a non-U.S. citizen who's required to register your handle.



Feel free to visit my blog; ace: https://www.ace.com
Quote
0 #44 proxy checker 2015-10-09 12:57
Hello, everything is going nicely here and ofcourse every one
is sharing facts, that's truly excellent, keep
up writing.
Quote
0 #43 Falmouth cctv 2015-10-08 09:21
To prevent this from happening again, the sensible thing
most people do is protect themselves through home security systems.
They even include detectors for high temperature deviations,
low or high temperature deviations, carbon monoxide level in the air, gas leak, glass breakage, heat, smoke and window
contacts. By running the feed cable to a USB port on your computer, you
can simultaneously charge the device and record footage.
Quote
0 #42 guaranteed targeted 2015-09-08 01:52
Wonderful blog! I found it while surfing around on Yahoo News.
Do you have any suggestions on how to get listed in Yahoo
News? I've been trying for a while but I never seem
to get there! Thank you
Quote
+1 #41 Pure Life Green 2015-08-19 06:59
you are truly a good webmaster. The website loading velocity is amazing.

It kind of feels that you are doing any distinctive trick.
Moreover, The contents are masterpiece. you have performed a great task on this
subject!
Quote

Add comment


Security code
Refresh